Логотип exploitDog
bind:CVE-2016-10530
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-10530

Количество 2

Количество 2

nvd логотип

CVE-2016-10530

больше 7 лет назад

The airbrake module 0.3.8 and earlier defaults to sending environment variables over HTTP. Environment variables can often times contain secret keys and other sensitive values. A malicious user could be on the same network as a regular user and intercept all the secret keys the user is sending. This goes against common best practice, which is to use HTTPS.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-856x-cp3q-47vg

почти 7 лет назад

Insecure Default Configuration in airbrake

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-10530

The airbrake module 0.3.8 and earlier defaults to sending environment variables over HTTP. Environment variables can often times contain secret keys and other sensitive values. A malicious user could be on the same network as a regular user and intercept all the secret keys the user is sending. This goes against common best practice, which is to use HTTPS.

CVSS3: 5.9
0%
Низкий
больше 7 лет назад
github логотип
GHSA-856x-cp3q-47vg

Insecure Default Configuration in airbrake

0%
Низкий
почти 7 лет назад

Уязвимостей на страницу