Логотип exploitDog
bind:"CVE-2022-27776" OR bind:"CVE-2022-22576" OR bind:"CVE-2022-27782" OR bind:"CVE-2022-27774"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-27776" OR bind:"CVE-2022-22576" OR bind:"CVE-2022-27782" OR bind:"CVE-2022-27774"

Количество 43

Количество 43

fstec логотип

BDU:2022-03036

больше 3 лет назад

Уязвимость реализации протокола OAUTH2 утилиты командной строки cURL, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к защищаемой информации

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2022-27774

больше 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
redhat логотип

CVE-2022-27774

больше 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2022-27774

больше 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
msrc логотип

CVE-2022-27774

больше 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2022-27774

больше 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4 ...

CVSS3: 5.7
EPSS: Низкий
ubuntu логотип

CVE-2022-27782

больше 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2022-27782

больше 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2022-27782

больше 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2022-27782

больше 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However several TLS andSSH settings were left out from the configuration match checks making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-27782

больше 3 лет назад

libcurl would reuse a previously created connection even when a TLS or ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-7xmh-mw7w-rr97

больше 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
fstec логотип

BDU:2022-03041

больше 3 лет назад

Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-x38v-8q6p-w65c

больше 3 лет назад

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2022-03185

больше 3 лет назад

Уязвимость реализации протоколов TLS и SSH утилиты командной строки cURL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1870-1

больше 3 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1805-1

больше 3 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1733-1

больше 3 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2829-1

больше 3 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2813-1

больше 3 лет назад

Security update for curl

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2022-03036

Уязвимость реализации протокола OAUTH2 утилиты командной строки cURL, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к защищаемой информации

CVSS3: 3.7
0%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
больше 3 лет назад
msrc логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4 ...

CVSS3: 5.7
0%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
redhat логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
msrc логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However several TLS andSSH settings were left out from the configuration match checks making themmatch too easily.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-27782

libcurl would reuse a previously created connection even when a TLS or ...

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-7xmh-mw7w-rr97

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-03041

Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-x38v-8q6p-w65c

libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-03185

Уязвимость реализации протоколов TLS и SSH утилиты командной строки cURL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.3
1%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1870-1

Security update for curl

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1805-1

Security update for curl

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1733-1

Security update for curl

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2829-1

Security update for curl

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2813-1

Security update for curl

больше 3 лет назад

Уязвимостей на страницу