HTTP header injection
Sign in to saveAlso known as HTTP injection, CWE-113
web application vulnerability that occurs when HTTP headers are dynamically generated from user input; can allow for HTTP response splitting, session fixation (via Set-Cookie), cross-site scripting, and malicious redirect attacks
Connections
list of HTTP status codes
Entity
HTTP
Entity
cross-site scripting
Entity
list of HTTP header fields
Entity
World Wide Web
Entity
web browser
Entity
HTTP cookie
Concept
HTTPS
Entity
web application
Entity
HTTP 404
Entity
vulnerability
Entity
403 Forbidden
Entity
browser extension
Entity
header
Entity
451 Unavailable For Legal Reasons
Entity
NoScript
Entity
QUIC AES_128GCM
Entity
HTTP referer
Entity
301 Moved Permanently
Entity
HTTP POST
Entity