← العودة للجدول
CVE-2008-1368
CVE-2008-1368 — CRLF injection vulnerability in Microsoft Internet Explorer 5 and 6 allows remot
📅 2008-03-18
🔴 Critical 🔥 No NVD Exploit Microsoft 🎯 EPSS 23.1%

📋 الوصف الكامل

CRLF injection vulnerability in Microsoft Internet Explorer 5 and 6 allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded CRLF (%0D%0A) before the FTP command, which causes the commands to be inserted into an authenticated FTP connection established earlier in the same browser session, as demonstrated using a DELE command, a variant or possibly a r

💻 الأنظمة المتأثرة

CRLF injection vulnerability

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2008-1368

📡 المصدر

NVD

✅ الحلول والتخفيف

Microsoft Patch Tuesday

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←