Логотип exploitDog
bind:CVE-2016-7152
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-7152

Количество 5

Количество 5

ubuntu логотип

CVE-2016-7152

больше 9 лет назад

The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2016-7152

больше 9 лет назад

The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

CVSS3: 3.1
EPSS: Низкий
nvd логотип

CVE-2016-7152

больше 9 лет назад

The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-7152

больше 9 лет назад

The HTTPS protocol does not consider the role of the TCP congestion wi ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-gj46-mfx7-2vwx

больше 3 лет назад

The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-7152

The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

CVSS3: 5.3
2%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-7152

The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

CVSS3: 3.1
2%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-7152

The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

CVSS3: 5.3
2%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-7152

The HTTPS protocol does not consider the role of the TCP congestion wi ...

CVSS3: 5.3
2%
Низкий
больше 9 лет назад
github логотип
GHSA-gj46-mfx7-2vwx

The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

CVSS3: 5.3
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу