AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-2292

MEDIUM · CVSS 4.3 EPSS 12.74%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-04-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-2292
Severity
MEDIUM
CVSS
4.3
EPSS
12.74%
Firefox

Original NVD Description

CRLF injection vulnerability in the Digest Authentication support for Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 allows remote attackers to conduct HTTP request splitting attacks via LF (%0a) bytes in the username attribute.