Loading...
Loading...
mod_auth in lighttpd before 1.4.36 allows remote attackers to inject arbitrary log entries via a basic HTTP authentication string without a colon character, as demonstrated by a string containing a NULL and new line character.
June 9, 2015
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2015-3200
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.