Home
HIGH: 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
<=0.6.4 (custom) before 0.8.0
affected
Description
Improper neutralization of CRLF sequences ('CRLF injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute Pardus allows Authentication Bypass. This issue affects Pardus: from <=0.6.4 before 0.8.0.
Problem types
CWE-93 Improper neutralization of CRLF sequences ('CRLF injection')
Product status
<=0.6.4 (custom) before 0.8.0
Credits
Çağrı ESER
References
www.usom.gov.tr/bildirim/tr-26-0131