Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-2046
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-2046

Description:
Multiple CRLF injection vulnerabilities in adclick.php in (a) Openads (phpAdsNew) 2.0.11 and earlier and (b) Openads for PostgreSQL (phpPgAds) 2.0.11 and earlier allow remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in (1) the dest parameter and (2) the Referer HTTP header. NOTE: some of these details are obtained from third party information.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA24876

CONFIRM
  http://forum.openads.org/index.php?showtopic=503413399&pid=39136
  http://sourceforge.net/forum/forum.php?forum_id=685278
  http://sourceforge.net/project/shownotes.php?release_id=500343


Return to the previous page.