CVE-2007-5595

CVE-2007-5595

CVE-2007-5595 · MEDIUM Severity

AV:N/AC:H/AU:N/C:P/I:P/A:P

CRLF injection vulnerability in the drupal_goto function in includes/common.inc Drupal 4.7.x before 4.7.8 and 5.x before 5.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

Learn more about our Web Application Penetration Testing UK.