Vulnerability Description
CRLF injection vulnerability in Ideal Science IdealBB 1.4.9 through 1.5.3 allows remote attackers to conduct HTTP response splitting attacks via unknown vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ideal Science | Idealbb | 1.4.9 |
References
- http://www.maxpatrol.com/advdetails.asp?id=14Vendor Advisory
- http://www.maxpatrol.com/mp_advisory.asp
- http://www.securityfocus.com/bid/11424
- http://www.maxpatrol.com/advdetails.asp?id=14Vendor Advisory
- http://www.maxpatrol.com/mp_advisory.asp
- http://www.securityfocus.com/bid/11424
FAQ
What is CVE-2004-2208?
CVE-2004-2208 is a vulnerability with a CVSS score of 5.0 (MEDIUM). CRLF injection vulnerability in Ideal Science IdealBB 1.4.9 through 1.5.3 allows remote attackers to conduct HTTP response splitting attacks via unknown vectors.
How severe is CVE-2004-2208?
CVE-2004-2208 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-2208?
Check the references section above for vendor advisories and patch information. Affected products include: Ideal Science Idealbb.