CVE-2017-1262
IBM Security Guardium 10.0 is vulnerable to HTTP response splitting attacks. A remote attacker could exploit this vulnerability using specially-crafted URL to cause the server to return a split response, once the URL is clicked. This would allow the attacker to perform further attacks, such as Web cache poisoning, cross-site scripting, and possibly obtain sensitive information. IBM X-Force ID: 124737.
- Affected products
- Ibm Security Guardium
- Ibm Security Guardium
- = 10.0, 10.0.1, 10.1.0, 10.1.2, 10.1.3
- CVSS 3.0
- 6.1 MEDIUM
- EPSS
- 1.3% (69th percentile)
- Weakness
- CWE-113
- NVD status
- Modified
- Published
- 2017-12-20
CVE-2017-1262 at NVD
1 known exploit for CVE-2017-1262
Proof-of-concept code and exploit modules indexed by Sploitus