Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-53008

Опубликовано: 28 нояб. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.3

Описание

Inconsistent interpretation of HTTP requests ('HTTP Request/Response Smuggling') issue exists in HAProxy. If this vulnerability is exploited, a remote attacker may access a path that is restricted by ACL (Access Control List) set on the product. As a result, the attacker may obtain sensitive information.

РелизСтатусПримечание
devel

not-affected

2.9.10-1ubuntu1
esm-infra/bionic

not-affected

code not present
esm-infra/focal

not-affected

code not present
esm-infra/xenial

not-affected

code not present
focal

not-affected

code not present
jammy

not-affected

code not present
noble

released

2.8.5-1ubuntu3.2
oracular

not-affected

2.9.10-1ubuntu1
upstream

released

2.6.19,2.8.11,2.9.10

Показывать по

EPSS

Процентиль: 36%
0.00148
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
redhat
10 месяцев назад

Inconsistent interpretation of HTTP requests ('HTTP Request/Response Smuggling') issue exists in HAProxy. If this vulnerability is exploited, a remote attacker may access a path that is restricted by ACL (Access Control List) set on the product. As a result, the attacker may obtain sensitive information.

CVSS3: 5.3
nvd
10 месяцев назад

Inconsistent interpretation of HTTP requests ('HTTP Request/Response Smuggling') issue exists in HAProxy. If this vulnerability is exploited, a remote attacker may access a path that is restricted by ACL (Access Control List) set on the product. As a result, the attacker may obtain sensitive information.

CVSS3: 5.3
debian
10 месяцев назад

Inconsistent interpretation of HTTP requests ('HTTP Request/Response S ...

suse-cvrf
9 месяцев назад

Security update for haproxy

CVSS3: 5.3
redos
9 месяцев назад

Уязвимость haproxy

EPSS

Процентиль: 36%
0.00148
Низкий

5.3 Medium

CVSS3