Loading HuntDB...

CRLF injection

Medium
X
X (Formerly Twitter)
Submitted None
Reported by s3c

Vulnerability Details

Technical details and impact analysis

Hello twiiter security team, on the domain ads.twitter.com http response splitting is vulnerability. PoC: https://ads.twitter.com/subscriptions/mobile/landing?ref=gl-tw-tw-promote-mode?t=%0d%0atest:tested ## Impact an attacker can set new header

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted