CVE-2016-10711: Apsis Pound

Critical severity, CVSS 9.8. EPSS: 2.8% chance of exploitation in the next 30 days.

Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751.

Affected products

  • Apsis Pound: up to and including 2.7
  • Debian Debian Linux: version 7.0 only

Published 2018-01-29. Last modified 2026-06-17.