Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9mph-vxjp-r3rx

Опубликовано: 25 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6
CVSS3: 5.3

Описание

rclone versions before v1.75.0 fail to reject transport downgrades in redirect handling, allowing Basic authorization and Cookie headers to be replayed over plaintext HTTP after same-host HTTPS-to-HTTP redirects. An on-path attacker observing the plaintext hop can capture and reuse credentials to perform WebDAV operations with the compromised account's permissions.

rclone versions before v1.75.0 fail to reject transport downgrades in redirect handling, allowing Basic authorization and Cookie headers to be replayed over plaintext HTTP after same-host HTTPS-to-HTTP redirects. An on-path attacker observing the plaintext hop can capture and reuse credentials to perform WebDAV operations with the compromised account's permissions.

EPSS

Процентиль: 1%
0.00108
Низкий

6 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 5.3
ubuntu
23 дня назад

rclone versions before v1.75.0 fail to reject transport downgrades in redirect handling, allowing Basic authorization and Cookie headers to be replayed over plaintext HTTP after same-host HTTPS-to-HTTP redirects. An on-path attacker observing the plaintext hop can capture and reuse credentials to perform WebDAV operations with the compromised account's permissions.

CVSS3: 5.3
redhat
23 дня назад

rclone versions before v1.75.0 fail to reject transport downgrades in redirect handling, allowing Basic authorization and Cookie headers to be replayed over plaintext HTTP after same-host HTTPS-to-HTTP redirects. An on-path attacker observing the plaintext hop can capture and reuse credentials to perform WebDAV operations with the compromised account's permissions.

CVSS3: 5.3
nvd
23 дня назад

rclone versions before v1.75.0 fail to reject transport downgrades in redirect handling, allowing Basic authorization and Cookie headers to be replayed over plaintext HTTP after same-host HTTPS-to-HTTP redirects. An on-path attacker observing the plaintext hop can capture and reuse credentials to perform WebDAV operations with the compromised account's permissions.

CVSS3: 5.3
debian
23 дня назад

rclone versions before v1.75.0 fail to reject transport downgrades in ...

EPSS

Процентиль: 1%
0.00108
Низкий

6 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-319