Exploit Mobile Mp3 Search Script 2.0 - 'dl.php' HTTP Response Splitting

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
36878
Проверка EDB
  1. Пройдено
Автор
CORRADO LIOTTA
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
null
Дата публикации
2012-02-23
Mobile Mp3 Search Script 2.0 - 'dl.php' HTTP Response Splitting
Код:
source: https://www.securityfocus.com/bid/52136/info

Mobile Mp3 Search Script is prone to an HTTP-response-splitting vulnerability because it fails to sufficiently sanitize user-supplied data.

Attackers can leverage this issue to influence or misrepresent how web content is served, cached, or interpreted. This could aid in various attacks that try to entice client users into a false sense of trust.

Mobile Mp3 Search Script 2.0 is vulnerable; other versions may also be affected 

http://www.example.com/dl.php?url=http://www.google.it
 
Источник
www.exploit-db.com

Похожие темы