Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3g3q-575c-4343

Опубликовано: 12 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Boa Web Server versions 0.94.13 through 0.94.14 fail to validate the correct security constraint on the HEAD HTTP method allowing everyone to bypass the Basic Authorization mechanism.

Boa Web Server versions 0.94.13 through 0.94.14 fail to validate the correct security constraint on the HEAD HTTP method allowing everyone to bypass the Basic Authorization mechanism.

EPSS

Процентиль: 57%
0.00348
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 3 лет назад

Boa Web Server versions 0.94.13 through 0.94.14 fail to validate the correct security constraint on the HEAD HTTP method allowing everyone to bypass the Basic Authorization mechanism.

CVSS3: 5.3
nvd
около 3 лет назад

Boa Web Server versions 0.94.13 through 0.94.14 fail to validate the correct security constraint on the HEAD HTTP method allowing everyone to bypass the Basic Authorization mechanism.

CVSS3: 5.3
debian
около 3 лет назад

Boa Web Server versions 0.94.13 through 0.94.14 fail to validate the c ...

EPSS

Процентиль: 57%
0.00348
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-863