PHPMyAdmin Header_HTTP_Inc.PHP HTTP Response Splitting Vulnerability
BID:15422
Info
PHPMyAdmin Header_HTTP_Inc.PHP HTTP Response Splitting Vulnerability
| Bugtraq ID: | 15422 |
| Class: | Input Validation Error |
| CVE: |
CVE-2005-3621 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 09 2005 12:00AM |
| Updated: | Jan 12 2007 10:30PM |
| Credit: | Toni Koivunen is credited with the discovery of this vulnerability. |
| Vulnerable: |
SAP Web Application Server 7.0 SAP Web Application Server 6.40 SAP Web Application Server 6.20 SAP Web Application Server 6.10 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 9.3 x86_64 S.u.S.E. Linux Professional 9.3 S.u.S.E. Linux Professional 9.2 x86_64 S.u.S.E. Linux Professional 9.2 S.u.S.E. Linux Professional 9.1 x86_64 S.u.S.E. Linux Professional 9.1 S.u.S.E. Linux Professional 9.0 x86_64 S.u.S.E. Linux Professional 9.0 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 9.3 x86_64 S.u.S.E. Linux Personal 9.3 S.u.S.E. Linux Personal 9.2 x86_64 S.u.S.E. Linux Personal 9.2 S.u.S.E. Linux Personal 9.1 x86_64 S.u.S.E. Linux Personal 9.1 S.u.S.E. Linux Personal 9.0 x86_64 S.u.S.E. Linux Personal 9.0 phpMyAdmin phpMyAdmin 2.7 .0-beta1 Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 |
| Not Vulnerable: | |
Discussion
PHPMyAdmin Header_HTTP_Inc.PHP HTTP Response Splitting Vulnerability
phpMyAdmin is prone to an HTTP-response-splitting vulnerability because the application fails to properly sanitize user-supplied input.
A remote attacker may exploit this vulnerability to influence or misrepresent web content is served, cached, or interpreted. This could aid in various attacks that attempt to entice client users into a false sense of trust.
This issue is reported to affect phpMyAdmin version 2.7.0-beta1; other versions may also be vulnerable.
phpMyAdmin is prone to an HTTP-response-splitting vulnerability because the application fails to properly sanitize user-supplied input.
A remote attacker may exploit this vulnerability to influence or misrepresent web content is served, cached, or interpreted. This could aid in various attacks that attempt to entice client users into a false sense of trust.
This issue is reported to affect phpMyAdmin version 2.7.0-beta1; other versions may also be vulnerable.
Exploit / POC
PHPMyAdmin Header_HTTP_Inc.PHP HTTP Response Splitting Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
PHPMyAdmin Header_HTTP_Inc.PHP HTTP Response Splitting Vulnerability
Solution:
Please see the referenced advisory for more information.
Solution:
Please see the referenced advisory for more information.
References
PHPMyAdmin Header_HTTP_Inc.PHP HTTP Response Splitting Vulnerability
References:
References:
- Main Vendor Homepage (OWASP)
- Multiple vulnerabilities in phpMyAdmin (Fitsec)
- SAP Homepage (SAP)
- [FS-05-02] Multiple vulnerabilities in phpMyAdmin ("Toni Koivunen"
) - CYBSEC - Security Advisory: HTTP Response Splitting in SAP WAS (Leandro Meiners
)