vendor:
Toko Lite CMS
by:
Gjoko 'LiquidWorm' Krstic
7.5
CVSS
HIGH
HTTP Response Splitting
113
CWE
Product Name: Toko Lite CMS
Affected Version From: 1.5.2002
Affected Version To: 1.5.2002
Patch Exists: NO
Related CWE: N/A
CPE: a:toko:toko_lite_cms:1.5.2
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Microsoft Windows XP Professional SP3 (EN), Apache 2.2.14 (Win32), PHP 5.3.1, MySQL 5.1.41
2011
Toko Lite CMS 1.5.2 (edit.php) HTTP Response Splitting Vulnerability
Input passed to the 'charSet' parameter in 'edit.php' is not properly sanitised before being returned to the user. This can be exploited to insert arbitrary HTTP headers, which are included in a response sent to the user.
Mitigation:
Input validation should be performed to ensure that untrusted data is not included in HTTP response headers.