Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-69p6-xm96-58f8

Опубликовано: 27 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An HTTP response splitting attack in web application in ASUS RT-AX88U before v3.0.0.4.388.20558 allows an attacker to craft a specific URL that if an authenticated victim visits it, the URL will give access to the cloud storage of the attacker.

An HTTP response splitting attack in web application in ASUS RT-AX88U before v3.0.0.4.388.20558 allows an attacker to craft a specific URL that if an authenticated victim visits it, the URL will give access to the cloud storage of the attacker.

EPSS

Процентиль: 79%
0.01205
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-436
CWE-74

Связанные уязвимости

CVSS3: 6.5
nvd
больше 3 лет назад

An HTTP response splitting attack in web application in ASUS RT-AX88U before v3.0.0.4.388.20558 allows an attacker to craft a specific URL that if an authenticated victim visits it, the URL will give access to the cloud storage of the attacker.

EPSS

Процентиль: 79%
0.01205
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-436
CWE-74