redhat ceph CVE-2015-5245 is a vulnerability in Red Hat Ceph
Published on December 3, 2015

CRLF injection vulnerability in the Ceph Object Gateway (aka radosgw or RGW) in Ceph before 0.94.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted bucket name.

Vendor Advisory NVD


Products Associated with CVE-2015-5245

Want to know whenever a new CVE is published for Red Hat Ceph? stack.watch will email you.

 

Exploit Probability

EPSS
0.36%
Percentile
57.87%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.