Loading HuntDB...

GHSA-g39q-wwrq-p5cv

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

An improper neutralization of CRLF sequences in HTTP headers ('HTTP Response Splitting') vulnerability [CWE-113] In FortiWeb version 7.0.0 through 7.0.2, FortiWeb version 6.4.0 through 6.4.2, FortiWeb version 6.3.6 through 6.3.20 may allow an authenticated and remote attacker to inject arbitrary headers.

Related CVEs

Key Information

GHSA ID
GHSA-g39q-wwrq-p5cv
Published
January 3, 2023 6:30 PM
Last Modified
January 10, 2023 3:30 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 11, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.