← Back

CVE-2011-4237

nvd nist
Published: May 3, 2012Modified: Apr 29, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

CRLF injection vulnerability in autologin.jsp in Cisco CiscoWorks Common Services 4.0, as used in Cisco Prime LAN Management Solution and other products, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the URL parameter, aka Bug ID CSCtu18693.

Affected (1)

1 product
Ciscoworks Common Services
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 4.0
Running on/withPlatform Versions
Cisco
Prime Lan Management Solution
Version 4.2

Timeline

No history available yet.