Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rhrp-h4q5-hrfx

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions.

WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions.

EPSS

Процентиль: 94%
0.13907
Средний

Связанные уязвимости

nvd
около 21 года назад

WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions.

EPSS

Процентиль: 94%
0.13907
Средний