Synopsis
The remote host is vulnerable to an HTTP splitting attack.
Description
There is a flaw in the remote phpAdNew/phpPgAds PHP Ads server, a banner management and tracking system written in PHP. This version of phpAdNew/phpPgAds is vulnerable to a HTTP response splitting vulnerability. An attacker exploiting this flaw would be able to redirect users to another site to steal their credentials.
Solution
Upgrade to version 2.0.2 or higher.
Plugin Details
Nessus ID: 16276
Reference Information
BID: 12398