Описание
An issue in dom96 HTTPbeast v.0.4.1 and before allows a remote attacker to send a malicious crafted request due to insufficient parsing in the parser.nim component.
Ссылки
- Third Party Advisory
- ExploitIssue Tracking
- Issue TrackingPatch
- Third Party Advisory
- ExploitIssue Tracking
- Issue TrackingPatch
Уязвимые конфигурации
Конфигурация 1Версия до 0.4.1 (включая)
cpe:2.3:a:dom96:httpbeast:*:*:*:*:*:*:*:*
EPSS
Процентиль: 85%
0.02418
Низкий
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-20
Связанные уязвимости
CVSS3: 9.8
github
около 2 лет назад
An issue in dom96 HTTPbeast v.0.4.1 and before allows a remote attacker to execute arbitrary code via a crafted request to the parser.nim component.
EPSS
Процентиль: 85%
0.02418
Низкий
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-20