CVE-2021-28979

SafeNet KeySecure Management Console 8.12.0 is vulnerable to HTTP response splitting attacks. A remote attacker could exploit this vulnerability using specially-crafted URL to cause the server to return a split response, once the URL is clicked.
References
Link Resource
http://safenet.com Product
http://thales.com Not Applicable
https://www.gruppotim.it/redteam Third Party Advisory
https://www.thalesgroup.com/en Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:thalesgroup:safenet_keysecure:*:*:*:*:*:*:*:*

History

03 May 2022, 16:04

Type Values Removed Values Added
CWE CWE-312 CWE-74

15 Jul 2021, 19:44

Type Values Removed Values Added
CPE cpe:2.3:a:thalesgroup:safenet_keysecure:8.12.0:*:*:*:*:*:*:* cpe:2.3:a:thalesgroup:safenet_keysecure:*:*:*:*:*:*:*:*

24 Jun 2021, 01:13

Type Values Removed Values Added
References
  • (MISC) https://www.thalesgroup.com/en - Vendor Advisory
References (MISC) http://safenet.com - (MISC) http://safenet.com - Product
References (MISC) https://www.gruppotim.it/redteam - (MISC) https://www.gruppotim.it/redteam - Third Party Advisory
References (MISC) http://thales.com - (MISC) http://thales.com - Not Applicable
CPE cpe:2.3:a:thalesgroup:safenet_keysecure:8.12.0:*:*:*:*:*:*:*
CWE CWE-312
CVSS v2 : unknown
v3 : unknown
v2 : 4.3
v3 : 6.5

16 Jun 2021, 12:49

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-16 12:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-28979

Mitre link : CVE-2021-28979

CVE.ORG link : CVE-2021-28979


JSON object : View

Products Affected

thalesgroup

  • safenet_keysecure
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')