Количество 14
Количество 14
GHSA-89qw-6g6w-269q
When curl is instructed to get content using the metalink feature, and a user name and password are used to download the metalink XML file, those same credentials are then subsequently passed on to each of the servers from which curl will download or try to download the contents from. Often contrary to the user's expectations and intentions and without telling the user it happened.

CVE-2021-22923
When curl is instructed to get content using the metalink feature, and a user name and password are used to download the metalink XML file, those same credentials are then subsequently passed on to each of the servers from which curl will download or try to download the contents from. Often contrary to the user's expectations and intentions and without telling the user it happened.

CVE-2021-22923
When curl is instructed to get content using the metalink feature, and a user name and password are used to download the metalink XML file, those same credentials are then subsequently passed on to each of the servers from which curl will download or try to download the contents from. Often contrary to the user's expectations and intentions and without telling the user it happened.

CVE-2021-22923
When curl is instructed to get content using the metalink feature, and a user name and password are used to download the metalink XML file, those same credentials are then subsequently passed on to each of the servers from which curl will download or try to download the contents from. Often contrary to the user's expectations and intentions and without telling the user it happened.
CVE-2021-22923
When curl is instructed to get content using the metalink feature, and ...

BDU:2022-02170
Уязвимость программного средства для взаимодействия с серверами CURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить доступ к конфиденциальным данным
ELSA-2021-3582
ELSA-2021-3582: curl security update (MODERATE)

openSUSE-SU-2021:2439-1
Security update for curl

openSUSE-SU-2021:1088-1
Security update for curl

SUSE-SU-2021:2462-1
Security update for curl

SUSE-SU-2021:2440-1
Security update for curl

SUSE-SU-2021:2439-1
Security update for curl

SUSE-SU-2021:2425-1
Security update for curl

SUSE-SU-2021:14768-1
Security update for curl
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-89qw-6g6w-269q When curl is instructed to get content using the metalink feature, and a user name and password are used to download the metalink XML file, those same credentials are then subsequently passed on to each of the servers from which curl will download or try to download the contents from. Often contrary to the user's expectations and intentions and without telling the user it happened. | CVSS3: 5.3 | 0% Низкий | около 3 лет назад | |
![]() | CVE-2021-22923 When curl is instructed to get content using the metalink feature, and a user name and password are used to download the metalink XML file, those same credentials are then subsequently passed on to each of the servers from which curl will download or try to download the contents from. Often contrary to the user's expectations and intentions and without telling the user it happened. | CVSS3: 5.3 | 0% Низкий | почти 4 года назад |
![]() | CVE-2021-22923 When curl is instructed to get content using the metalink feature, and a user name and password are used to download the metalink XML file, those same credentials are then subsequently passed on to each of the servers from which curl will download or try to download the contents from. Often contrary to the user's expectations and intentions and without telling the user it happened. | CVSS3: 5.7 | 0% Низкий | почти 4 года назад |
![]() | CVE-2021-22923 When curl is instructed to get content using the metalink feature, and a user name and password are used to download the metalink XML file, those same credentials are then subsequently passed on to each of the servers from which curl will download or try to download the contents from. Often contrary to the user's expectations and intentions and without telling the user it happened. | CVSS3: 5.3 | 0% Низкий | почти 4 года назад |
CVE-2021-22923 When curl is instructed to get content using the metalink feature, and ... | CVSS3: 5.3 | 0% Низкий | почти 4 года назад | |
![]() | BDU:2022-02170 Уязвимость программного средства для взаимодействия с серверами CURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить доступ к конфиденциальным данным | CVSS3: 5.3 | 0% Низкий | почти 4 года назад |
ELSA-2021-3582 ELSA-2021-3582: curl security update (MODERATE) | почти 4 года назад | |||
![]() | openSUSE-SU-2021:2439-1 Security update for curl | почти 4 года назад | ||
![]() | openSUSE-SU-2021:1088-1 Security update for curl | почти 4 года назад | ||
![]() | SUSE-SU-2021:2462-1 Security update for curl | почти 4 года назад | ||
![]() | SUSE-SU-2021:2440-1 Security update for curl | почти 4 года назад | ||
![]() | SUSE-SU-2021:2439-1 Security update for curl | почти 4 года назад | ||
![]() | SUSE-SU-2021:2425-1 Security update for curl | почти 4 года назад | ||
![]() | SUSE-SU-2021:14768-1 Security update for curl | почти 4 года назад |
Уязвимостей на страницу