Количество 4
Количество 4
CVE-2016-9964
redirect() in bottle.py in bottle 0.12.10 doesn't filter a "\r\n" sequence, which leads to a CRLF attack, as demonstrated by a redirect("233\r\nSet-Cookie: name=salt") call.
CVE-2016-9964
redirect() in bottle.py in bottle 0.12.10 doesn't filter a "\r\n" sequence, which leads to a CRLF attack, as demonstrated by a redirect("233\r\nSet-Cookie: name=salt") call.
CVE-2016-9964
redirect() in bottle.py in bottle 0.12.10 doesn't filter a "\r\n" sequ ...
GHSA-j6f7-hghw-g437
bottle.py vulnerable to CRLF Injection
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2016-9964 redirect() in bottle.py in bottle 0.12.10 doesn't filter a "\r\n" sequence, which leads to a CRLF attack, as demonstrated by a redirect("233\r\nSet-Cookie: name=salt") call. | CVSS3: 6.5 | 1% Низкий | около 9 лет назад | |
CVE-2016-9964 redirect() in bottle.py in bottle 0.12.10 doesn't filter a "\r\n" sequence, which leads to a CRLF attack, as demonstrated by a redirect("233\r\nSet-Cookie: name=salt") call. | CVSS3: 6.5 | 1% Низкий | около 9 лет назад | |
CVE-2016-9964 redirect() in bottle.py in bottle 0.12.10 doesn't filter a "\r\n" sequ ... | CVSS3: 6.5 | 1% Низкий | около 9 лет назад | |
GHSA-j6f7-hghw-g437 bottle.py vulnerable to CRLF Injection | CVSS3: 6.5 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу