PoC Index

CVE-2002-1405

MEDIUM 5.0EPSS 5.0%

CRLF injection vulnerability in Lynx 2.8.4 and earlier allows remote attackers to inject false HTTP headers into an HTTP request that is provided on the command line, via a URL containing encoded carriage return, line feed, and other whitespace characters.

CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
EPSS
5.04% chance of exploitation in the next 30 days, 92th percentile
Published
2004-09-01
Updated
2024-08-08

ExploitDB entries (1)

References

Related