Описание
Foundry Networks ServerIron switches do not decode URIs when applying "url-map" rules, which could make it easier for attackers to cause the switch to forward traffic to a different server than intended and exploit vulnerabilities that would otherwise be inaccessible.
Ссылки
- PatchVendor Advisory
- Vendor Advisory
- ExploitVendor Advisory
- PatchVendor Advisory
- Vendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:foundrynet:serveriron:5.1.10t12:*:*:*:*:*:*:*
cpe:2.3:a:foundrynet:serveriron:6.0:*:*:*:*:*:*:*
cpe:2.3:a:foundrynet:serveriron:7.1.09:*:*:*:*:*:*:*
cpe:2.3:a:foundrynet:serveriron:400:*:*:*:*:*:*:*
cpe:2.3:a:foundrynet:serveriron:800:*:*:*:*:*:*:*
cpe:2.3:a:foundrynet:serveriron:xl:*:*:*:*:*:*:*
cpe:2.3:a:foundrynet:serveriron:xl_g:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00527
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Foundry Networks ServerIron switches do not decode URIs when applying "url-map" rules, which could make it easier for attackers to cause the switch to forward traffic to a different server than intended and exploit vulnerabilities that would otherwise be inaccessible.
EPSS
Процентиль: 67%
0.00527
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other