Логотип exploitDog
bind:"CVE-2022-22576" OR bind:"CVE-2022-27774" OR bind:"CVE-2022-27776" OR bind:"CVE-2022-27782"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-22576" OR bind:"CVE-2022-27774" OR bind:"CVE-2022-27776" OR bind:"CVE-2022-27782"

Количество 43

Количество 43

rocky логотип

RLSA-2022:5313

почти 4 года назад

Moderate: curl security update

EPSS: Низкий
oracle-oval логотип

ELSA-2022-5313

больше 3 лет назад

ELSA-2022-5313: curl security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-5245

больше 3 лет назад

ELSA-2022-5245: curl security update (MODERATE)

EPSS: Низкий
redos логотип

ROS-20220516-30

почти 4 года назад

Множественные уязвимости libcURL

EPSS: Низкий
redos логотип

ROS-20220516-09

почти 4 года назад

Множественные уязвимости cURL

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1680-1

почти 4 года назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1657-1

почти 4 года назад

Security update for curl

EPSS: Низкий
ubuntu логотип

CVE-2022-22576

почти 4 года назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2022-22576

почти 4 года назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2022-22576

почти 4 года назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2022-22576

почти 4 года назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S) IMAP(S) POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2022-22576

почти 4 года назад

An improper authentication vulnerability exists in curl 7.33.0 to and ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-2r69-696x-qxj9

почти 4 года назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
fstec логотип

BDU:2022-03036

около 4 лет назад

Уязвимость реализации протокола OAUTH2 утилиты командной строки cURL, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к защищаемой информации

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2022-27774

почти 4 года назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
redhat логотип

CVE-2022-27774

почти 4 года назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2022-27774

почти 4 года назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
msrc логотип

CVE-2022-27774

около 1 месяца назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2022-27774

почти 4 года назад

An insufficiently protected credentials vulnerability exists in curl 4 ...

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-7xmh-mw7w-rr97

почти 4 года назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2022:5313

Moderate: curl security update

почти 4 года назад
oracle-oval логотип
ELSA-2022-5313

ELSA-2022-5313: curl security update (MODERATE)

больше 3 лет назад
oracle-oval логотип
ELSA-2022-5245

ELSA-2022-5245: curl security update (MODERATE)

больше 3 лет назад
redos логотип
ROS-20220516-30

Множественные уязвимости libcURL

почти 4 года назад
redos логотип
ROS-20220516-09

Множественные уязвимости cURL

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:1680-1

Security update for curl

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:1657-1

Security update for curl

почти 4 года назад
ubuntu логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
почти 4 года назад
redhat логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
почти 4 года назад
msrc логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S) IMAP(S) POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
почти 4 года назад
debian логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and ...

CVSS3: 8.1
0%
Низкий
почти 4 года назад
github логотип
GHSA-2r69-696x-qxj9

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
почти 4 года назад
fstec логотип
BDU:2022-03036

Уязвимость реализации протокола OAUTH2 утилиты командной строки cURL, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к защищаемой информации

CVSS3: 3.7
0%
Низкий
около 4 лет назад
ubuntu логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
почти 4 года назад
redhat логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5
0%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
почти 4 года назад
msrc логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4 ...

CVSS3: 5.7
0%
Низкий
почти 4 года назад
github логотип
GHSA-7xmh-mw7w-rr97

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
почти 4 года назад

Уязвимостей на страницу