Логотип exploitDog
bind:CVE-2019-10196
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-10196

Количество 3

Количество 3

redhat логотип

CVE-2019-10196

почти 8 лет назад

A flaw was found in http-proxy-agent, prior to version 2.1.0. It was discovered http-proxy-agent passes an auth option to the Buffer constructor without proper sanitization. This could result in a Denial of Service through the usage of all available CPU resources and data exposure through an uninitialized memory leak in setups where an attacker could submit typed input to the auth parameter.

CVSS3: 7.3
EPSS: Низкий
nvd логотип

CVE-2019-10196

почти 5 лет назад

A flaw was found in http-proxy-agent, prior to version 2.1.0. It was discovered http-proxy-agent passes an auth option to the Buffer constructor without proper sanitization. This could result in a Denial of Service through the usage of all available CPU resources and data exposure through an uninitialized memory leak in setups where an attacker could submit typed input to the auth parameter.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-86wf-436m-h424

около 4 лет назад

Resource Exhaustion Denial of Service in http-proxy-agent

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2019-10196

A flaw was found in http-proxy-agent, prior to version 2.1.0. It was discovered http-proxy-agent passes an auth option to the Buffer constructor without proper sanitization. This could result in a Denial of Service through the usage of all available CPU resources and data exposure through an uninitialized memory leak in setups where an attacker could submit typed input to the auth parameter.

CVSS3: 7.3
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2019-10196

A flaw was found in http-proxy-agent, prior to version 2.1.0. It was discovered http-proxy-agent passes an auth option to the Buffer constructor without proper sanitization. This could result in a Denial of Service through the usage of all available CPU resources and data exposure through an uninitialized memory leak in setups where an attacker could submit typed input to the auth parameter.

CVSS3: 9.8
0%
Низкий
почти 5 лет назад
github логотип
GHSA-86wf-436m-h424

Resource Exhaustion Denial of Service in http-proxy-agent

CVSS3: 9.8
0%
Низкий
около 4 лет назад

Уязвимостей на страницу