CVE-2015-2028 Information

Description

CRLF injection vulnerability in IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3 and 7.1.1 before 7.1.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL.

Reference

http://www-01.ibm.com/support/docview.wss?uid=swg1PI44098 http://www-01.ibm.com/support/docview.wss?uid=swg1PI44105 http://www-01.ibm.com/support/docview.wss?uid=swg21966044

Share on: