Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6mxf-77w3-cj5m

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remote attackers to connect as other users via an unauthenticated request, a similar issue to CVE-2014-0015.

cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remote attackers to connect as other users via an unauthenticated request, a similar issue to CVE-2014-0015.

EPSS

Процентиль: 82%
0.01767
Низкий

Связанные уязвимости

ubuntu
больше 10 лет назад

cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remote attackers to connect as other users via an unauthenticated request, a similar issue to CVE-2014-0015.

redhat
больше 10 лет назад

cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remote attackers to connect as other users via an unauthenticated request, a similar issue to CVE-2014-0015.

nvd
больше 10 лет назад

cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remote attackers to connect as other users via an unauthenticated request, a similar issue to CVE-2014-0015.

debian
больше 10 лет назад

cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM c ...

suse-cvrf
больше 10 лет назад

Security update for curl

EPSS

Процентиль: 82%
0.01767
Низкий