Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-10751

Опубликовано: 23 авг. 2019
Источник: debian
EPSS Низкий

Описание

All versions of the HTTPie package prior to version 1.0.3 are vulnerable to Open Redirect that allows an attacker to write an arbitrary file with supplied filename and content to the current directory, by redirecting a request from HTTP to a crafted URL pointing to a server in his or hers control.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
httpiefixed1.0.3-1package
httpieno-dsabusterpackage
httpieno-dsastretchpackage

Примечания

  • https://snyk.io/vuln/SNYK-PYTHON-HTTPIE-460107

  • https://github.com/jakubroztocil/httpie/commit/df36d6255df5793129b02ac82f1010171bd8a0a8

EPSS

Процентиль: 65%
0.00492
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 6 лет назад

All versions of the HTTPie package prior to version 1.0.3 are vulnerable to Open Redirect that allows an attacker to write an arbitrary file with supplied filename and content to the current directory, by redirecting a request from HTTP to a crafted URL pointing to a server in his or hers control.

CVSS3: 8.8
nvd
больше 6 лет назад

All versions of the HTTPie package prior to version 1.0.3 are vulnerable to Open Redirect that allows an attacker to write an arbitrary file with supplied filename and content to the current directory, by redirecting a request from HTTP to a crafted URL pointing to a server in his or hers control.

suse-cvrf
больше 6 лет назад

Security update for httpie

CVSS3: 8.8
github
больше 6 лет назад

Open Redirect in httpie

EPSS

Процентиль: 65%
0.00492
Низкий