Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-10006

Опубликовано: 30 окт. 2024
Источник: debian

Описание

A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using Headers in L7 traffic intentions could bypass HTTP header based access rules.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
consulremovedpackage
consulend-of-lifebullseyepackage

Примечания

  • https://github.com/advisories/GHSA-5c4w-8hhh-3c3h

Связанные уязвимости

CVSS3: 8.3
ubuntu
около 1 года назад

A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using Headers in L7 traffic intentions could bypass HTTP header based access rules.

CVSS3: 8.3
redhat
около 1 года назад

A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using Headers in L7 traffic intentions could bypass HTTP header based access rules.

CVSS3: 8.3
nvd
около 1 года назад

A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using Headers in L7 traffic intentions could bypass HTTP header based access rules.

CVSS3: 5.8
redos
около 1 года назад

Уязвимость consul

CVSS3: 8.3
github
около 1 года назад

Hashicorp Consul Improper Neutralization of HTTP Headers for Scripting Syntax vulnerability