Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-30823

Опубликовано: 28 окт. 2021
Источник: debian
EPSS Низкий

Описание

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 14.8 and iPadOS 14.8, tvOS 15, Safari 15, watchOS 8. An attacker in a privileged network position may be able to bypass HSTS.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webkit2gtkfixed2.34.1-1package
webkit2gtkignoredstretchpackage
wpewebkitfixed2.34.1-1package

Примечания

  • https://webkitgtk.org/security/WSA-2021-0007.html

EPSS

Процентиль: 65%
0.00502
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 4 года назад

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 14.8 and iPadOS 14.8, tvOS 15, Safari 15, watchOS 8. An attacker in a privileged network position may be able to bypass HSTS.

CVSS3: 6.5
redhat
больше 3 лет назад

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 14.8 and iPadOS 14.8, tvOS 15, Safari 15, watchOS 8. An attacker in a privileged network position may be able to bypass HSTS.

CVSS3: 6.5
nvd
почти 4 года назад

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 14.8 and iPadOS 14.8, tvOS 15, Safari 15, watchOS 8. An attacker in a privileged network position may be able to bypass HSTS.

CVSS3: 6.5
github
около 3 лет назад

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 14.8 and iPadOS 14.8, tvOS 15, Safari 15, watchOS 8. An attacker in a privileged network position may be able to bypass HSTS.

CVSS3: 6.5
fstec
почти 4 года назад

Уязвимость модуля отображения веб-страниц WPE WebKit, связанная с передачей защищаемой информации в незашифрованном виде, позволяющая нарушителю оказать воздействие на целостность данных

EPSS

Процентиль: 65%
0.00502
Низкий