Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 22

Количество 22

suse-cvrf логотип

SUSE-SU-2016:2449-1

почти 10 лет назад

Security update for curl

EPSS: Низкий
oracle-oval логотип

ELSA-2016-2575

больше 9 лет назад

ELSA-2016-2575: curl security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:2379-1

почти 10 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:2330-1

почти 10 лет назад

Security update for curl

EPSS: Низкий
ubuntu логотип

CVE-2016-7141

почти 10 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-7141

почти 10 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2016-7141

почти 10 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-7141

почти 10 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem. ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-vx32-35rm-8jq5

около 4 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0230-1

больше 8 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2699-1

почти 9 лет назад

Security update for SLES 12 Docker image

EPSS: Низкий
ubuntu логотип

CVE-2016-5420

почти 10 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2016-5420

около 10 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 4.2
EPSS: Средний
nvd логотип

CVE-2016-5420

почти 10 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2016-5420

почти 10 лет назад

curl and libcurl before 7.50.1 do not check the client certificate whe ...

CVSS3: 7.5
EPSS: Средний
ubuntu логотип

CVE-2016-5419

почти 10 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2016-5419

около 10 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 4.8
EPSS: Средний
nvd логотип

CVE-2016-5419

почти 10 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2016-5419

почти 10 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption w ...

CVSS3: 7.5
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2017:2700-1

почти 9 лет назад

Security update for SLES 12-SP1 Docker image

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2016:2449-1

Security update for curl

почти 10 лет назад
oracle-oval логотип
ELSA-2016-2575

ELSA-2016-2575: curl security, bug fix, and enhancement update (MODERATE)

больше 9 лет назад
suse-cvrf логотип
openSUSE-SU-2016:2379-1

Security update for curl

почти 10 лет назад
suse-cvrf логотип
SUSE-SU-2016:2330-1

Security update for curl

почти 10 лет назад
ubuntu логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
8%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 4.2
8%
Низкий
почти 10 лет назад
nvd логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
8%
Низкий
почти 10 лет назад
debian логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem. ...

CVSS3: 7.5
8%
Низкий
почти 10 лет назад
github логотип
GHSA-vx32-35rm-8jq5

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
8%
Низкий
около 4 лет назад
suse-cvrf логотип
SUSE-SU-2018:0230-1

Security update for curl

больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:2699-1

Security update for SLES 12 Docker image

почти 9 лет назад
ubuntu логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
15%
Средний
почти 10 лет назад
redhat логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 4.2
15%
Средний
около 10 лет назад
nvd логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
15%
Средний
почти 10 лет назад
debian логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate whe ...

CVSS3: 7.5
15%
Средний
почти 10 лет назад
ubuntu логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
15%
Средний
почти 10 лет назад
redhat логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 4.8
15%
Средний
около 10 лет назад
nvd логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
15%
Средний
почти 10 лет назад
debian логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption w ...

CVSS3: 7.5
15%
Средний
почти 10 лет назад
suse-cvrf логотип
SUSE-SU-2017:2700-1

Security update for SLES 12-SP1 Docker image

почти 9 лет назад

Уязвимостей на страницу