HTTP Response Splitting Vulnerability in IBM WebSphere Application Server
CVE-2017-1503
6.1MEDIUM
What is CVE-2017-1503?
IBM WebSphere Application Server versions 7.0, 8.0, 8.5, and 9.0 are vulnerable to HTTP response splitting attacks. This vulnerability allows a remote attacker to exploit the server by sending a specially-crafted URL, resulting in a split response. The successful exploitation can lead to various forms of attack, including web cache poisoning and cross-site scripting, thereby putting sensitive information at risk. This vulnerability emphasizes the need for implementing robust security measures to protect against such threats.
Affected Version(s)
IBM WebSphere Application Server 7.0, 8.0, 8.5, 9.0