CVE-2024-5193 | Ritlabs TinyWeb Server 1.94 Request crlf injection
A vulnerability marked as problematic has been reported in Ritlabs TinyWeb Server 1.94. This vulnerability affects unknown code of the component Request Handler. The manipulation with the input %0D%0A leads to crlf injection.
This vulnerability is traded as CVE-2024-5193. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is suggested to upgrade the affected component.
The vendor was contacted early about this disclosure but did not respond in any way.