Description
Hotels Styx through 1.0.0.beta8 allows HTTP response splitting due to CRLF Injection. This is exploitable if untrusted user input can appear in a response header.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-0336 | Hotels Styx through 1.0.0.beta8 allows HTTP response splitting due to CRLF Injection. This is exploitable if untrusted user input can appear in a response header. |
Github GHSA |
GHSA-6v7p-v754-j89v | HTTP Response Splitting in Styx |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T09:11:05.162Z
Reserved: 2020-01-13T00:00:00.000Z
Link: CVE-2020-6858
No data.
Status : Modified
Published: 2020-03-12T14:15:21.487
Modified: 2024-11-21T05:36:18.410
Link: CVE-2020-6858
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA