AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2012-5486

MEDIUM · CVSS 6.4 EPSS 2.50%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-09-30 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2012-5486
Severity
MEDIUM
CVSS
6.4
EPSS
2.50%

Original NVD Description

ZPublisher.HTTPRequest._scrubHeader in Zope 2 before 2.13.19, as used in Plone before 4.3 beta 1, allows remote attackers to inject arbitrary HTTP headers via a linefeed (LF) character.