Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

fstec логотип

BDU:2020-04581

почти 6 лет назад

Уязвимость анализатора файлов cookie программной платформы ASP.NET Core, позволяющая нарушителю выполнить обход функций безопасности

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2020-1045

около 6 лет назад

<p>A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.</p> <p>The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.</p> <p>The security update addresses the vulnerability by fixing the way the ASP.NET Core cookie parser handles encoded names.</p>

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2020-1045

почти 6 лет назад

<p>A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.</p> <p>The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.</p> <p>The security update addresses the vulnerability by fixing the way the ASP.NET Core cookie parser handles encoded names.</p>

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2020-1045

почти 6 лет назад

Microsoft ASP.NET Core Security Feature Bypass Vulnerability

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-1045

почти 6 лет назад

<p>A security feature bypass vulnerability exists in the way Microsoft ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-hxrm-9w7p-39cc

около 4 лет назад

Cookie parsing failure

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2020-3699

почти 6 лет назад

ELSA-2020-3699: .NET Core 3.1 security and bugfix update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2020-04581

Уязвимость анализатора файлов cookie программной платформы ASP.NET Core, позволяющая нарушителю выполнить обход функций безопасности

CVSS3: 7.5
6%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-1045

<p>A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.</p> <p>The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.</p> <p>The security update addresses the vulnerability by fixing the way the ASP.NET Core cookie parser handles encoded names.</p>

CVSS3: 7.5
6%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-1045

<p>A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.</p> <p>The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.</p> <p>The security update addresses the vulnerability by fixing the way the ASP.NET Core cookie parser handles encoded names.</p>

CVSS3: 7.5
6%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-1045

Microsoft ASP.NET Core Security Feature Bypass Vulnerability

CVSS3: 7.5
6%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-1045

<p>A security feature bypass vulnerability exists in the way Microsoft ...

CVSS3: 7.5
6%
Низкий
почти 6 лет назад
github логотип
GHSA-hxrm-9w7p-39cc

Cookie parsing failure

CVSS3: 7.5
6%
Низкий
около 4 лет назад
oracle-oval логотип
ELSA-2020-3699

ELSA-2020-3699: .NET Core 3.1 security and bugfix update (IMPORTANT)

6%
Низкий
почти 6 лет назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.