Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hq6q-jfv4-xqv9

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An exploitable HTTP Header Injection vulnerability exists in the Web Application functionality of the Moxa AWK-3131A Wireless Access Point running firmware 1.1. A specially crafted HTTP request can inject a payload in the bkpath parameter which will be copied in to Location header of the HTTP response.

An exploitable HTTP Header Injection vulnerability exists in the Web Application functionality of the Moxa AWK-3131A Wireless Access Point running firmware 1.1. A specially crafted HTTP request can inject a payload in the bkpath parameter which will be copied in to Location header of the HTTP response.

EPSS

Процентиль: 78%
0.0118
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 4.3
nvd
почти 9 лет назад

An exploitable HTTP Header Injection vulnerability exists in the Web Application functionality of the Moxa AWK-3131A Wireless Access Point running firmware 1.1. A specially crafted HTTP request can inject a payload in the bkpath parameter which will be copied in to Location header of the HTTP response.

EPSS

Процентиль: 78%
0.0118
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-74