Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2007-2292
CRLF injection vulnerability in the Digest Authentication support for Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 allows remote attackers to conduct HTTP request splitting attacks via LF (%0a) bytes in the username attribute.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.015
EPSS Ranking
80.5%
CVSS Severity
CVSS v2 Score
4.3
References
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742
http://secunia.com/advisories/27276
http://secunia.com/advisories/27298
http://secunia.com/advisories/27311
http://secunia.com/advisories/27315
http://secunia.com/advisories/27325
http://secunia.com/advisories/27327
http://secunia.com/advisories/27335
http://secunia.com/advisories/27336
http://secunia.com/advisories/27356
http://secunia.com/advisories/27360
http://secunia.com/advisories/27383
http://secunia.com/advisories/27387
http://secunia.com/advisories/27403
http://secunia.com/advisories/27414
http://secunia.com/advisories/27425
http://secunia.com/advisories/27480
http://secunia.com/advisories/27665
http://secunia.com/advisories/27680
http://secunia.com/advisories/28398
http://securityreason.com/securityalert/2654
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201516-1
http://support.novell.com/techcenter/psdb/60eb95b75c76f9fbfcc9a89f99cd8f79.html
http://www.debian.org/security/2007/dsa-1392
http://www.debian.org/security/2007/dsa-1396
http://www.debian.org/security/2007/dsa-1401
http://www.gentoo.org/security/en/glsa/glsa-200711-14.xml
http://www.mandriva.com/en/security/advisories?name=MDKSA-2007:202
http://www.mozilla.org/security/announce/2007/mfsa2007-31.html
http://www.novell.com/linux/security/advisories/2007_57_mozilla.html
http://www.redhat.com/support/errata/RHSA-2007-0979.html
http://www.redhat.com/support/errata/RHSA-2007-0980.html
http://www.redhat.com/support/errata/RHSA-2007-0981.html
http://www.securityfocus.com/archive/1/466906/100/0/threaded
http://www.securityfocus.com/archive/1/482876/100/200/threaded
http://www.securityfocus.com/archive/1/482925/100/0/threaded
http://www.securityfocus.com/archive/1/482932/100/200/threaded
http://www.securityfocus.com/bid/23668
http://www.securitytracker.com/id?1017968
http://www.ubuntu.com/usn/usn-536-1
http://www.vupen.com/english/advisories/2007/3544
http://www.vupen.com/english/advisories/2007/3587
http://www.vupen.com/english/advisories/2008/0083
http://www.wisec.it/vulns.php?id=11
https://bugzilla.mozilla.org/show_bug.cgi?id=378787
https://exchange.xforce.ibmcloud.com/vulnerabilities/33981
https://issues.rpath.com/browse/RPL-1858
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10195
https://usn.ubuntu.com/535-1/
https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00498.html
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00285.html
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00355.html
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742
http://secunia.com/advisories/27276
http://secunia.com/advisories/27298
http://secunia.com/advisories/27311
http://secunia.com/advisories/27315
http://secunia.com/advisories/27325
http://secunia.com/advisories/27327
http://secunia.com/advisories/27335
http://secunia.com/advisories/27336
http://secunia.com/advisories/27356
http://secunia.com/advisories/27360
http://secunia.com/advisories/27383
http://secunia.com/advisories/27387
http://secunia.com/advisories/27403
http://secunia.com/advisories/27414
http://secunia.com/advisories/27425
http://secunia.com/advisories/27480
http://secunia.com/advisories/27665
http://secunia.com/advisories/27680
http://secunia.com/advisories/28398
http://securityreason.com/securityalert/2654
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201516-1
http://support.novell.com/techcenter/psdb/60eb95b75c76f9fbfcc9a89f99cd8f79.html
http://www.debian.org/security/2007/dsa-1392
http://www.debian.org/security/2007/dsa-1396
http://www.debian.org/security/2007/dsa-1401
http://www.gentoo.org/security/en/glsa/glsa-200711-14.xml
http://www.mandriva.com/en/security/advisories?name=MDKSA-2007:202
http://www.mozilla.org/security/announce/2007/mfsa2007-31.html
http://www.novell.com/linux/security/advisories/2007_57_mozilla.html
http://www.redhat.com/support/errata/RHSA-2007-0979.html
http://www.redhat.com/support/errata/RHSA-2007-0980.html
http://www.redhat.com/support/errata/RHSA-2007-0981.html
http://www.securityfocus.com/archive/1/466906/100/0/threaded
http://www.securityfocus.com/archive/1/482876/100/200/threaded
http://www.securityfocus.com/archive/1/482925/100/0/threaded
http://www.securityfocus.com/archive/1/482932/100/200/threaded
http://www.securityfocus.com/bid/23668
http://www.securitytracker.com/id?1017968
http://www.ubuntu.com/usn/usn-536-1
http://www.vupen.com/english/advisories/2007/3544
http://www.vupen.com/english/advisories/2007/3587
http://www.vupen.com/english/advisories/2008/0083
http://www.wisec.it/vulns.php?id=11
https://bugzilla.mozilla.org/show_bug.cgi?id=378787
https://exchange.xforce.ibmcloud.com/vulnerabilities/33981
https://issues.rpath.com/browse/RPL-1858
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10195
https://usn.ubuntu.com/535-1/
https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00498.html
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00285.html
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00355.html
Products affected by CVE-2007-2292
Microsoft
»
Internet Explorer
»
Version:
7.0.5730.11
cpe:2.3:a:microsoft:internet_explorer:7.0.5730.11
Mozilla
»
Firefox
»
Version:
N/A
cpe:2.3:a:mozilla:firefox:-
Mozilla
»
Firefox
»
Version:
0.1
cpe:2.3:a:mozilla:firefox:0.1
Mozilla
»
Firefox
»
Version:
0.10
cpe:2.3:a:mozilla:firefox:0.10
Mozilla
»
Firefox
»
Version:
0.10.1
cpe:2.3:a:mozilla:firefox:0.10.1
Mozilla
»
Firefox
»
Version:
0.2
cpe:2.3:a:mozilla:firefox:0.2
Mozilla
»
Firefox
»
Version:
0.3
cpe:2.3:a:mozilla:firefox:0.3
Mozilla
»
Firefox
»
Version:
0.4
cpe:2.3:a:mozilla:firefox:0.4
Mozilla
»
Firefox
»
Version:
0.5
cpe:2.3:a:mozilla:firefox:0.5
Mozilla
»
Firefox
»
Version:
0.6
cpe:2.3:a:mozilla:firefox:0.6
Mozilla
»
Firefox
»
Version:
0.6.1
cpe:2.3:a:mozilla:firefox:0.6.1
Mozilla
»
Firefox
»
Version:
0.7
cpe:2.3:a:mozilla:firefox:0.7
Mozilla
»
Firefox
»
Version:
0.7.1
cpe:2.3:a:mozilla:firefox:0.7.1
Mozilla
»
Firefox
»
Version:
0.8
cpe:2.3:a:mozilla:firefox:0.8
Mozilla
»
Firefox
»
Version:
0.9
cpe:2.3:a:mozilla:firefox:0.9
Mozilla
»
Firefox
»
Version:
0.9.1
cpe:2.3:a:mozilla:firefox:0.9.1
Mozilla
»
Firefox
»
Version:
0.9.2
cpe:2.3:a:mozilla:firefox:0.9.2
Mozilla
»
Firefox
»
Version:
0.9.3
cpe:2.3:a:mozilla:firefox:0.9.3
Mozilla
»
Firefox
»
Version:
1.0
cpe:2.3:a:mozilla:firefox:1.0
Mozilla
»
Firefox
»
Version:
1.0.1
cpe:2.3:a:mozilla:firefox:1.0.1
Mozilla
»
Firefox
»
Version:
1.0.2
cpe:2.3:a:mozilla:firefox:1.0.2
Mozilla
»
Firefox
»
Version:
1.0.3
cpe:2.3:a:mozilla:firefox:1.0.3
Mozilla
»
Firefox
»
Version:
1.0.4
cpe:2.3:a:mozilla:firefox:1.0.4
Mozilla
»
Firefox
»
Version:
1.0.5
cpe:2.3:a:mozilla:firefox:1.0.5
Mozilla
»
Firefox
»
Version:
1.0.6
cpe:2.3:a:mozilla:firefox:1.0.6
Mozilla
»
Firefox
»
Version:
1.0.7
cpe:2.3:a:mozilla:firefox:1.0.7
Mozilla
»
Firefox
»
Version:
1.0.8
cpe:2.3:a:mozilla:firefox:1.0.8
Mozilla
»
Firefox
»
Version:
1.4.1
cpe:2.3:a:mozilla:firefox:1.4.1
Mozilla
»
Firefox
»
Version:
1.5
cpe:2.3:a:mozilla:firefox:1.5
Mozilla
»
Firefox
»
Version:
1.5.0.1
cpe:2.3:a:mozilla:firefox:1.5.0.1
Mozilla
»
Firefox
»
Version:
1.5.0.10
cpe:2.3:a:mozilla:firefox:1.5.0.10
Mozilla
»
Firefox
»
Version:
1.5.0.11
cpe:2.3:a:mozilla:firefox:1.5.0.11
Mozilla
»
Firefox
»
Version:
1.5.0.12
cpe:2.3:a:mozilla:firefox:1.5.0.12
Mozilla
»
Firefox
»
Version:
1.5.0.2
cpe:2.3:a:mozilla:firefox:1.5.0.2
Mozilla
»
Firefox
»
Version:
1.5.0.3
cpe:2.3:a:mozilla:firefox:1.5.0.3
Mozilla
»
Firefox
»
Version:
1.5.0.4
cpe:2.3:a:mozilla:firefox:1.5.0.4
Mozilla
»
Firefox
»
Version:
1.5.0.5
cpe:2.3:a:mozilla:firefox:1.5.0.5
Mozilla
»
Firefox
»
Version:
1.5.0.6
cpe:2.3:a:mozilla:firefox:1.5.0.6
Mozilla
»
Firefox
»
Version:
1.5.0.7
cpe:2.3:a:mozilla:firefox:1.5.0.7
Mozilla
»
Firefox
»
Version:
1.5.0.8
cpe:2.3:a:mozilla:firefox:1.5.0.8
Mozilla
»
Firefox
»
Version:
1.5.0.9
cpe:2.3:a:mozilla:firefox:1.5.0.9
Mozilla
»
Firefox
»
Version:
1.5.1
cpe:2.3:a:mozilla:firefox:1.5.1
Mozilla
»
Firefox
»
Version:
1.5.2
cpe:2.3:a:mozilla:firefox:1.5.2
Mozilla
»
Firefox
»
Version:
1.5.3
cpe:2.3:a:mozilla:firefox:1.5.3
Mozilla
»
Firefox
»
Version:
1.5.4
cpe:2.3:a:mozilla:firefox:1.5.4
Mozilla
»
Firefox
»
Version:
1.5.5
cpe:2.3:a:mozilla:firefox:1.5.5
Mozilla
»
Firefox
»
Version:
1.5.6
cpe:2.3:a:mozilla:firefox:1.5.6
Mozilla
»
Firefox
»
Version:
1.5.7
cpe:2.3:a:mozilla:firefox:1.5.7
Mozilla
»
Firefox
»
Version:
1.5.8
cpe:2.3:a:mozilla:firefox:1.5.8
Mozilla
»
Firefox
»
Version:
1.8
cpe:2.3:a:mozilla:firefox:1.8
Mozilla
»
Firefox
»
Version:
2.0
cpe:2.3:a:mozilla:firefox:2.0
Mozilla
»
Firefox
»
Version:
2.0.0.1
cpe:2.3:a:mozilla:firefox:2.0.0.1
Mozilla
»
Firefox
»
Version:
2.0.0.2
cpe:2.3:a:mozilla:firefox:2.0.0.2
Mozilla
»
Firefox
»
Version:
2.0.0.3
cpe:2.3:a:mozilla:firefox:2.0.0.3
Mozilla
»
Firefox
»
Version:
2.0.0.4
cpe:2.3:a:mozilla:firefox:2.0.0.4
Mozilla
»
Firefox
»
Version:
2.0.0.5
cpe:2.3:a:mozilla:firefox:2.0.0.5
Mozilla
»
Firefox
»
Version:
2.0.0.6
cpe:2.3:a:mozilla:firefox:2.0.0.6
Mozilla
»
Firefox
»
Version:
2.0.0.7
cpe:2.3:a:mozilla:firefox:2.0.0.7
Mozilla
»
Firefox
»
Version:
2.0.0.8
cpe:2.3:a:mozilla:firefox:2.0.0.8
Mozilla
»
Seamonkey
»
Version:
N/A
cpe:2.3:a:mozilla:seamonkey:-
Mozilla
»
Seamonkey
»
Version:
1.0
cpe:2.3:a:mozilla:seamonkey:1.0
Mozilla
»
Seamonkey
»
Version:
1.0.1
cpe:2.3:a:mozilla:seamonkey:1.0.1
Mozilla
»
Seamonkey
»
Version:
1.0.2
cpe:2.3:a:mozilla:seamonkey:1.0.2
Mozilla
»
Seamonkey
»
Version:
1.0.3
cpe:2.3:a:mozilla:seamonkey:1.0.3
Mozilla
»
Seamonkey
»
Version:
1.0.4
cpe:2.3:a:mozilla:seamonkey:1.0.4
Mozilla
»
Seamonkey
»
Version:
1.0.5
cpe:2.3:a:mozilla:seamonkey:1.0.5
Mozilla
»
Seamonkey
»
Version:
1.0.6
cpe:2.3:a:mozilla:seamonkey:1.0.6
Mozilla
»
Seamonkey
»
Version:
1.0.7
cpe:2.3:a:mozilla:seamonkey:1.0.7
Mozilla
»
Seamonkey
»
Version:
1.0.8
cpe:2.3:a:mozilla:seamonkey:1.0.8
Mozilla
»
Seamonkey
»
Version:
1.0.9
cpe:2.3:a:mozilla:seamonkey:1.0.9
Mozilla
»
Seamonkey
»
Version:
1.1
cpe:2.3:a:mozilla:seamonkey:1.1
Mozilla
»
Seamonkey
»
Version:
1.1.1
cpe:2.3:a:mozilla:seamonkey:1.1.1
Mozilla
»
Seamonkey
»
Version:
1.1.2
cpe:2.3:a:mozilla:seamonkey:1.1.2
Mozilla
»
Seamonkey
»
Version:
1.1.3
cpe:2.3:a:mozilla:seamonkey:1.1.3
Mozilla
»
Seamonkey
»
Version:
1.1.4
cpe:2.3:a:mozilla:seamonkey:1.1.4
Mozilla
»
Seamonkey
»
Version:
1.1.5
cpe:2.3:a:mozilla:seamonkey:1.1.5
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved