vendor:
Nikto2
by:
Adam Greenhill
9.8
CVSS
CRITICAL
CSV Injection
94
CWE
Product Name: Nikto2
Affected Version From: 2.1.6
Affected Version To: 2.1.5
Patch Exists: YES
Related CWE: CVE-2018-11652
CPE: 2.3:a:cirt:nikto2
Metasploit:
N/A
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=120459, https://www.infosecmatter.com/nessus-plugin-library/?id=151732, https://www.infosecmatter.com/list-of-metasploit-linux-exploits-detailed-spreadsheet/, https://www.infosecmatter.com/metasploit-auxiliary-modules-detailed-spreadsheet/
Platforms Tested: Kali Linux 4.14 x64
2018
Nikto 2.1.6 – CSV Injection
CSV Injection vulnerability in Nikto 2.1.6 and earlier allows remote attackers to inject arbitrary OS commands via the Server field in an HTTP response header, which is directly injected into a CSV report.
Mitigation:
Disable server tokens and ensure that the Server field in an HTTP response header is not directly injected into a CSV report.