Описание
Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive information by reading the Proxy-Authorization header in a redirected request.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*
Конфигурация 2Версия до 2.2.1 (включая)
cpe:2.3:a:python:requests:*:*:*:*:*:*:*:*
EPSS
Процентиль: 64%
0.00464
Низкий
5 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
ubuntu
больше 11 лет назад
Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive information by reading the Proxy-Authorization header in a redirected request.
redhat
около 12 лет назад
Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive information by reading the Proxy-Authorization header in a redirected request.
debian
больше 11 лет назад
Requests (aka python-requests) before 2.3.0 allows remote servers to o ...
github
больше 3 лет назад
Exposure of Sensitive Information to an Unauthorized Actor in Requests
EPSS
Процентиль: 64%
0.00464
Низкий
5 Medium
CVSS2
Дефекты
CWE-200