Логотип exploitDog
bind:"CVE-2022-22576" OR bind:"CVE-2022-27774" OR bind:"CVE-2022-27776" OR bind:"CVE-2022-27782"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-22576" OR bind:"CVE-2022-27774" OR bind:"CVE-2022-27776" OR bind:"CVE-2022-27782"

Количество 41

Количество 41

rocky логотип

RLSA-2022:5313

около 3 лет назад

Moderate: curl security update

EPSS: Низкий
oracle-oval логотип

ELSA-2022-5313

около 3 лет назад

ELSA-2022-5313: curl security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-5245

около 3 лет назад

ELSA-2022-5245: curl security update (MODERATE)

EPSS: Низкий
redos логотип

ROS-20220516-09

около 3 лет назад

Множественные уязвимости cURL

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1680-1

около 3 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1657-1

около 3 лет назад

Security update for curl

EPSS: Низкий
ubuntu логотип

CVE-2022-22576

около 3 лет назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2022-22576

больше 3 лет назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2022-22576

около 3 лет назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2022-22576

около 3 лет назад

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2022-22576

около 3 лет назад

An improper authentication vulnerability exists in curl 7.33.0 to and ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-2r69-696x-qxj9

около 3 лет назад

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
EPSS: Низкий
fstec логотип

BDU:2022-03036

больше 3 лет назад

Уязвимость реализации протокола OAUTH2 утилиты командной строки cURL, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к защищаемой информации

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2022-27774

около 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
redhat логотип

CVE-2022-27774

больше 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2022-27774

около 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
msrc логотип

CVE-2022-27774

около 3 лет назад

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2022-27774

около 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4 ...

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-7xmh-mw7w-rr97

около 3 лет назад

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
EPSS: Низкий
fstec логотип

BDU:2022-03041

больше 3 лет назад

Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2022:5313

Moderate: curl security update

около 3 лет назад
oracle-oval логотип
ELSA-2022-5313

ELSA-2022-5313: curl security update (MODERATE)

около 3 лет назад
oracle-oval логотип
ELSA-2022-5245

ELSA-2022-5245: curl security update (MODERATE)

около 3 лет назад
redos логотип
ROS-20220516-09

Множественные уязвимости cURL

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1680-1

Security update for curl

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1657-1

Security update for curl

около 3 лет назад
ubuntu логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
около 3 лет назад
redhat логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
около 3 лет назад
msrc логотип
CVSS3: 8.1
0%
Низкий
около 3 лет назад
debian логотип
CVE-2022-22576

An improper authentication vulnerability exists in curl 7.33.0 to and ...

CVSS3: 8.1
0%
Низкий
около 3 лет назад
github логотип
GHSA-2r69-696x-qxj9

An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVSS3: 8.1
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2022-03036

Уязвимость реализации протокола OAUTH2 утилиты командной строки cURL, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к защищаемой информации

CVSS3: 3.7
0%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
около 3 лет назад
redhat логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
около 3 лет назад
msrc логотип
CVSS3: 5.7
0%
Низкий
около 3 лет назад
debian логотип
CVE-2022-27774

An insufficiently protected credentials vulnerability exists in curl 4 ...

CVSS3: 5.7
0%
Низкий
около 3 лет назад
github логотип
GHSA-7xmh-mw7w-rr97

An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVSS3: 5.7
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2022-03041

Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу