| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.14783 |
| Category: | Web application abuses |
| Title: | Snitz Forums 2000 HTTP Response Splitting |
| Summary: | Checks for the presence of an HTTP Response Splitting |
| Description: | The remote host is using Snitz Forums 2000 - an ASP based forum/bbs. There is a bug in this software which makes it vulnerable to HTTP response splitting vulnerability. An attacker may use this bug to preform web cache poisoning, xss attack, etc. Solution : Upgrade to the latest version of this software. |
| Cross-Ref: |
BugTraq ID: 11201 Common Vulnerability Exposure (CVE) ID: CVE-2004-1687 Bugtraq: 20040916 ADVISORY: security hole (http response splitting) in snitz forums (Google Search) http://marc.theaimsgroup.com/?l=bugtraq&m=109537195413691&w=2 http://www.securityfocus.com/bid/11201 http://secunia.com/advisories/12590 XForce ISS Database: snitz-response-splitting(17421) http://xforce.iss.net/xforce/xfdb/17421 |
| Copyright | This script is Copyright (C) 2004 Noam Rathaus |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|