MEDIUM · 5.0

CVE-2005-2065

HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter...

Vulnerability Description

HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
Asp-NukeAsp-Nuke0.80

References

FAQ

What is CVE-2005-2065?

CVE-2005-2065 is a vulnerability with a CVSS score of 5.0 (MEDIUM). HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter...

How severe is CVE-2005-2065?

CVE-2005-2065 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-2065?

Check the references section above for vendor advisories and patch information. Affected products include: Asp-Nuke Asp-Nuke.