CVE-2005-2065

ASP Nuke 0.80 - HTTP Response Splitting via LangCode Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-2065. PoCs published by Alberto Trivero.

AI-analyzed exploit summary This exploit demonstrates an HTTP response splitting vulnerability in ASPNuke by injecting CRLF characters into the LangCode parameter, allowing an attacker to manipulate HTTP headers. The provided URL shows how an attacker can inject a Set-Cookie header, potentially leading to cache poisoning or session fixation attacks.

Description

HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Alberto Trivero · textwebappsasp
https://www.exploit-db.com/exploits/25907

This exploit demonstrates an HTTP response splitting vulnerability in ASPNuke by injecting CRLF characters into the LangCode parameter, allowing an attacker to manipulate HTTP headers. The provided URL shows how an attacker can inject a Set-Cookie header, potentially leading to cache poisoning or session fixation attacks.

Classification
Working Poc 90%
Attack Type
Other
Complexity
Trivial
Reliability
Reliable
Target: ASPNuke (version not specified)
No auth needed
Prerequisites: Access to the vulnerable ASPNuke instance
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=111989223906484&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/14063

Scores

EPSS 0.0185
EPSS Percentile 76.4%

Details

Status published
Products (1)
asp-nuke/asp-nuke 0.80
Published Jun 29, 2005
Tracked Since Feb 18, 2026