Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-9179

Опубликовано: 22 дек. 2016
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

lynx: It was found that Lynx doesn't parse the authority component of the URL correctly when the host name part ends with '?', and could instead be tricked into connecting to a different host.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:lynx:lynx:*:*:*:*:*:*:*:*

EPSS

Процентиль: 51%
0.00283
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 9 лет назад

lynx: It was found that Lynx doesn't parse the authority component of the URL correctly when the host name part ends with '?', and could instead be tricked into connecting to a different host.

CVSS3: 5.4
redhat
больше 9 лет назад

lynx: It was found that Lynx doesn't parse the authority component of the URL correctly when the host name part ends with '?', and could instead be tricked into connecting to a different host.

CVSS3: 7.5
msrc
5 месяцев назад

It was found that Lynx doesn't parse the authority component of the URL correctly

CVSS3: 7.5
debian
около 9 лет назад

lynx: It was found that Lynx doesn't parse the authority component of ...

suse-cvrf
почти 9 лет назад

Security update for lynx

EPSS

Процентиль: 51%
0.00283
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-20