Unrated severityNVD Advisory· Published Jun 4, 2008· Updated Apr 23, 2026
CVE-2008-1770
CVE-2008-1770
Description
CRLF injection vulnerability in Akamai Download Manager ActiveX control before 2.2.3.6 allows remote attackers to force the download and execution of arbitrary files via a URL parameter containing an encoded LF followed by a malicious target line.
Affected products
4cpe:2.3:a:akamai:download_manager:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:akamai:download_manager:*:*:*:*:*:*:*:*range: <=2.2.3.5
- cpe:2.3:a:akamai:download_manager:2.0.4.4:*:*:*:*:*:*:*
- cpe:2.3:a:akamai:download_manager:2.2.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:akamai:download_manager:2.2.1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- secunia.com/advisories/30537nvdVendor Advisory
- www.vupen.com/english/advisories/2008/1746/referencesnvdVendor Advisory
- lists.grok.org.uk/pipermail/full-disclosure/2008-June/062672.htmlnvd
- www.securityfocus.com/archive/1/493077/100/0/threadednvd
- www.securityfocus.com/archive/1/493142/100/0/threadednvd
- www.securitytracker.com/idnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/42879nvd
- www.exploit-db.com/exploits/5741nvd
News mentions
0No linked articles in our index yet.