CVE-2018-7830

Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200 where a denial of service can occur for ~1 minute by sending a specially crafted HTTP request.
Configurations

Configuration 1


Information

Published : 2018-11-30 07:29

Updated : 2018-12-28 05:32


NVD link : CVE-2018-7830

Mitre link : CVE-2018-7830

Products Affected
No products.
CWE
CWE-113

Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting')