Vulnerabilities > HP > Virtual Customer Access System > 14.06
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-06-09 | CVE-2015-3200 | Injection vulnerability in multiple products mod_auth in lighttpd before 1.4.36 allows remote attackers to inject arbitrary log entries via a basic HTTP authentication string without a colon character, as demonstrated by a string containing a NULL and new line character. | 7.5 |