### [CVE-2007-2291](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2291) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description CRLF injection vulnerability in the Digest Authentication support for Microsoft Internet Explorer 7.0.5730.11 allows remote attackers to conduct HTTP response splitting attacks via a LF (%0a) in the username attribute. ### POC #### Reference - http://securityreason.com/securityalert/2654 - http://www.wisec.it/vulns.php?id=11 #### Github No PoCs found on GitHub currently.