CVE-2005-1308
SqWebMail - Cross-Site Scripting via Redirect Parameter CRLF Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-1308. PoCs published by Zinho.
AI-analyzed exploit summary This exploit demonstrates an HTTP response splitting vulnerability in SQWebmail by injecting CRLF sequences via the 'redirect' parameter. It allows an attacker to manipulate HTTP responses, potentially leading to XSS or cache poisoning attacks.
Description
SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desired script or HTML.
Exploits (1)
This exploit demonstrates an HTTP response splitting vulnerability in SQWebmail by injecting CRLF sequences via the 'redirect' parameter. It allows an attacker to manipulate HTTP responses, potentially leading to XSS or cache poisoning attacks.