CRLF injection vulnerability in the HTTP Header Handler in Digital Broadband Delivery System in Cisco Headend System Release allows remote attackers to inject arbitrary HTTP headers, and conduct HTTP response splitting attacks or cross-site scripting (XSS) attacks, via a crafted request, aka Bug ID CSCur25580.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: cisco

Published: 2015-05-30T14:00:00

Updated: 2016-12-29T18:57:01

Reserved: 2015-01-07T00:00:00


Link: CVE-2015-0733

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2015-05-30T14:59:00.067

Modified: 2017-01-04T14:58:59.507


Link: CVE-2015-0733

JSON object: View

cve-icon Redhat Information

No data.

CWE