CVE-2008-1770
Last modified
CVE-2008-1770 is a vulnerability of currently unknown severity. CRLF injection vulnerability in Akamai Download Manager ActiveX control before 2.2.3.6 allows remote attackers to force the download and execution of arbitrary files via a URL parameter containing an encoded LF followed by a malicious target line.. EPSS estimates a 10.42% chance of exploitation in the next 30 days.
Description
CRLF injection vulnerability in Akamai Download Manager ActiveX control before 2.2.3.6 allows remote attackers to force the download and execution of arbitrary files via a URL parameter containing an encoded LF followed by a malicious target line.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Akamai | Download Manager | <= 2.2.3.5 |
| Akamai | Download Manager | 2.0.4.4 |
| Akamai | Download Manager | 2.2.0.0 |
| Akamai | Download Manager | 2.2.1.0 |
References
- http://secunia.com/advisories/30537Vendor Advisory
- http://www.vupen.com/english/advisories/2008/1746/referencesVendor Advisory
- http://secunia.com/advisories/30537Vendor Advisory
- http://www.vupen.com/english/advisories/2008/1746/referencesVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-1770?
How severe is CVE-2008-1770?
How do I fix CVE-2008-1770?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2008
- CVE-2008-1764Unspecified vulnerability in Opera before 9.27 has unknown i…
- CVE-2008-1765Buffer overflow in Adobe Photoshop Album Starter Edition 3.2…
- CVE-2008-1766Multiple unspecified vulnerabilities in phpBB before 3.0.1 h…
- CVE-2008-1767Buffer overflow in pattern.c in libxslt before 1.1.24 allows…
- CVE-2008-1768Multiple integer overflows in VLC before 0.8.6f allow remote…
- CVE-2008-1769VLC before 0.8.6f allow remote attackers to cause a denial o…
- CVE-2008-1771Integer overflow in the ws_getpostvars function in Firefly M…
- CVE-2008-1772iScripts SocialWare stores passwords in cleartext in a datab…
- CVE-2008-1773PHP remote file inclusion vulnerability in includes/header.i…
- CVE-2008-1774SQL injection vulnerability in editlink.php in Pligg 9.9.0 a…
- CVE-2008-1775Cross-site scripting (XSS) vulnerability in mindex.do in Man…
- CVE-2008-1776PHP remote file inclusion vulnerability in modules/basicfog/…
Are you affected by CVE-2008-1770?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
