AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-2046

HIGH · CVSS 7.5 EPSS 1.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-04-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-2046
Severity
HIGH
CVSS
7.5
EPSS
1.40%

Original NVD Description

Multiple CRLF injection vulnerabilities in adclick.php in (a) Openads (phpAdsNew) 2.0.11 and earlier and (b) Openads for PostgreSQL (phpPgAds) 2.0.11 and earlier allow remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in (1) the dest parameter and (2) the Referer HTTP header. NOTE: some of these details are obtained from third party information.