Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2012-5572

CRLF injection vulnerability in the cookie method (lib/Dancer/Cookie.pm) in Dancer before 1.3114 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a cookie name, a different vulnerability than CVE-2012-5526.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 65.8%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2012-5572
  • Dancer » Dancer » Version: Any
    cpe:2.3:a:dancer:dancer:*
  • Dancer » Dancer » Version: 1.150
    cpe:2.3:a:dancer:dancer:1.150
  • Dancer » Dancer » Version: 1.3060
    cpe:2.3:a:dancer:dancer:1.3060
  • Dancer » Dancer » Version: 1.3071
    cpe:2.3:a:dancer:dancer:1.3071
  • Dancer » Dancer » Version: 1.3079_3
    cpe:2.3:a:dancer:dancer:1.3079_3
  • Dancer » Dancer » Version: 1.3079_5
    cpe:2.3:a:dancer:dancer:1.3079_5
  • Dancer » Dancer » Version: 1.3110
    cpe:2.3:a:dancer:dancer:1.3110
  • Dancer » Dancer » Version: 1.3111
    cpe:2.3:a:dancer:dancer:1.3111
  • Dancer » Dancer » Version: 1.3111_01
    cpe:2.3:a:dancer:dancer:1.3111_01
  • Dancer » Dancer » Version: 1.3112
    cpe:2.3:a:dancer:dancer:1.3112


Contact Us

Shodan ® - All rights reserved