Description
Improper neutralization of CRLF sequences ('CRLF injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute Pardus Update allows Authentication Bypass. This issue affects Pardus Update: from 0.6.3 before 0.6.4.
Problem types
CWE-93 Improper neutralization of CRLF sequences ('CRLF injection')
Product status
0.6.3 (custom) before 0.6.4
Credits
Çağrı ESER
References
www.usom.gov.tr/bildirim/tr-26-0131
siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0131