CVE-2018-16181

MEDIUM

i-FILTER <9.50R05 - HTTP Header Injection

Title source: llm
STIX 2.1

Description

HTTP header injection vulnerability in i-FILTER Ver.9.50R05 and earlier may allow remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks that may result in an arbitrary script injection or setting an arbitrary cookie values via unspecified vectors.

Scores

CVSS v3 6.1
EPSS 0.0027
EPSS Percentile 50.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-113
Status published
Products (1)
daj/i-filter < 9.50r05
Published Jan 09, 2019
Tracked Since Feb 18, 2026