Логотип exploitDog
bind:"CVE-2022-27774" OR bind:"CVE-2022-27782" OR bind:"CVE-2022-22576" OR bind:"CVE-2022-27776"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-27774" OR bind:"CVE-2022-27782" OR bind:"CVE-2022-22576" OR bind:"CVE-2022-27776"

Количество 41

Количество 41

rocky логотип

RLSA-2022:5313

около 3 лет назад

Moderate: curl security update

EPSS: Низкий
oracle-oval логотип

ELSA-2022-5313

около 3 лет назад

ELSA-2022-5313: curl security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-5245

около 3 лет назад

ELSA-2022-5245: curl security update (MODERATE)

EPSS: Низкий
redos логотип

ROS-20220516-09

около 3 лет назад

Множественные уязвимости cURL

EPSS: Низкий
ubuntu логотип

CVE-2022-27774

около 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
redhat логотип

CVE-2022-27774

больше 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2022-27774

около 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
msrc логотип

CVE-2022-27774

около 3 лет назад

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2022-27774

около 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4 ...

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-7xmh-mw7w-rr97

около 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
fstec логотип

BDU:2022-03041

больше 3 лет назад

Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1680-1

около 3 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1657-1

около 3 лет назад

Security update for curl

EPSS: Низкий
ubuntu логотип

CVE-2022-27782

около 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2022-27782

около 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2022-27782

около 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2022-27782

около 3 лет назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-27782

около 3 лет назад

libcurl would reuse a previously created connection even when a TLS or ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2225-1

около 2 лет назад

Security update for curl

EPSS: Низкий
github логотип

GHSA-x38v-8q6p-w65c

около 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2022:5313

Moderate: curl security update

около 3 лет назад
oracle-oval логотип
ELSA-2022-5313

ELSA-2022-5313: curl security update (MODERATE)

около 3 лет назад
oracle-oval логотип
ELSA-2022-5245

ELSA-2022-5245: curl security update (MODERATE)

около 3 лет назад
redos логотип
ROS-20220516-09

Множественные уязвимости cURL

около 3 лет назад
ubuntu логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
около 3 лет назад
redhat логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
около 3 лет назад
msrc логотип
CVSS3: 5.7
0%
Низкий
около 3 лет назад
debian логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4 ...

CVSS3: 5.7
0%
Низкий
около 3 лет назад
github логотип
GHSA-7xmh-mw7w-rr97

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2022-03041

Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5
0%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1680-1

Security update for curl

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1657-1

Security update for curl

около 3 лет назад
ubuntu логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
redhat логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
около 3 лет назад
debian логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or ...

CVSS3: 7.5
0%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2023:2225-1

Security update for curl

около 2 лет назад
github логотип
GHSA-x38v-8q6p-w65c

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу