Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-1045

Опубликовано: 01 июл. 2020
Источник: redhat
CVSS3: 7.5
EPSS Средний

Описание

A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.

The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.

The security update addresses the vulnerability by fixing the way the ASP.NET Core cookie parser handles encoded names.



A flaw was found in ASP.NET. Certain cookie values are not properly decoded allowing a remote attacker to bypass the "Cookie Prefixes" security mechanism. The highest threat from this vulnerability is to data integrity.

Отчет

The "Cookie Prefixes" feature is not used by default in ASP.NET. Successful exploitation likely requires a secondary vulnerability, for example a cross-site scripting issue.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
.NET Core 2.1 on Red Hat Enterprise Linuxrh-dotnet21Not affected
Red Hat Enterprise Linux 8dotnetNot affected
.NET Core on Red Hat Enterprise Linuxrh-dotnet31-dotnetFixedRHSA-2020:369708.09.2020
Red Hat Enterprise Linux 8dotnet3.1FixedRHSA-2020:369908.09.2020

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-807
https://bugzilla.redhat.com/show_bug.cgi?id=1873451dotnet: ASP.NET cookie prefix spoofing vulnerability

EPSS

Процентиль: 95%
0.20523
Средний

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
больше 5 лет назад

<p>A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.</p> <p>The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.</p> <p>The security update addresses the vulnerability by fixing the way the ASP.NET Core cookie parser handles encoded names.</p>

CVSS3: 7.5
msrc
больше 5 лет назад

Microsoft ASP.NET Core Security Feature Bypass Vulnerability

CVSS3: 7.5
debian
больше 5 лет назад

<p>A security feature bypass vulnerability exists in the way Microsoft ...

CVSS3: 7.5
github
больше 3 лет назад

Cookie parsing failure

oracle-oval
больше 5 лет назад

ELSA-2020-3699: .NET Core 3.1 security and bugfix update (IMPORTANT)

EPSS

Процентиль: 95%
0.20523
Средний

7.5 High

CVSS3