Possible HTTP Response Splitting Vulnerability #217
Please review the published advisory, probably it's in the API WebOb which is not documented here: http://docs.webob.org/en/latest/api/exceptions.html
Probably there are other WebOb applications with similar issues.
Here is the advisory: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2015-5267.php
The text was updated successfully, but these errors were encountered:
Okay, so some sample code to make this a little more clear:
The data that is printed is:
This is passed off to