AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2005-1951

MEDIUM · CVSS 5 EPSS 2.34%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-06-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2005-1951
Severity
MEDIUM
CVSS
5
EPSS
2.34%

Original NVD Description

Multiple HTTP Response Splitting vulnerabilities in osCommerce 2.2 Milestone 2 and earlier allow remote attackers to spoof web content and poison web caches via hex-encoded CRLF ("%0d%0a") sequences in the (1) products_id or (2) pid parameter to index.php or (3) goto parameter to banner.php.