Описание
SurfControl SuperScout only filters packets containing both an HTTP GET request and a Host header, which allows local users to bypass filtering by fragmenting packets so that no packet contains both data elements.
Ссылки
- US Government Resource
- US Government Resource
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:surfcontrol:superscout_web_filter:*:*:*:*:*:*:*:*
EPSS
Процентиль: 14%
0.00047
Низкий
4.6 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
SurfControl SuperScout only filters packets containing both an HTTP GET request and a Host header, which allows local users to bypass filtering by fragmenting packets so that no packet contains both data elements.
EPSS
Процентиль: 14%
0.00047
Низкий
4.6 Medium
CVSS2
Дефекты
NVD-CWE-Other