Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p7f3-g69w-5c7q

Опубликовано: 31 мая 2024
Источник: github
Github: Не прошло ревью

Описание

HTTP request desynchronization in Ping Identity PingAccess, all versions prior to 8.0.1 affected allows an attacker to send specially crafted http header requests to create a request smuggling condition for proxied requests.

HTTP request desynchronization in Ping Identity PingAccess, all versions prior to 8.0.1 affected allows an attacker to send specially crafted http header requests to create a request smuggling condition for proxied requests.

EPSS

Процентиль: 73%
0.00785
Низкий

Дефекты

CWE-444

Связанные уязвимости

nvd
больше 1 года назад

HTTP request desynchronization in Ping Identity PingAccess, all versions prior to 8.0.1 affected allows an attacker to send specially crafted http header requests to create a request smuggling condition for proxied requests.

EPSS

Процентиль: 73%
0.00785
Низкий

Дефекты

CWE-444