CVE-2018-16181 Vulnerability Details

  /     /     /  

CVE-2018-16181 Metadata Quick Info

CVE Published: 09/01/2019 | CVE Updated: 05/08/2024 | CVE Year: 2018
Source: jpcert | Vendor: Digital Arts Inc. | Product: i-FILTER
Status : PUBLISHED

CVE-2018-16181 Description

HTTP header injection vulnerability in i-FILTER Ver.9.50R05 and earlier may allow remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks that may result in an arbitrary script injection or setting an arbitrary cookie values via unspecified vectors.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: HTTP header injection
Source: Digital Arts Inc.

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).