← Back to CVE List

CVE-2023-38330

Published: 2023-08-02T15:15Z
Last Modified: 2024-11-21T08:13Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
OXID eShop Enterprise Edition 6.5.0 – 6.5.2 before 6.5.3 allows uploading files with modified headers in the administration area. An attacker can upload a file with a modified header to create a HTTP Response Splitting attack. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt