ZeroHour

CVE-2016-10594

CVSS 3.0
8.1 high
EPSS
<1%p46
Published
()
Modified
Description

ipip is a Node.js module to query geolocation information for an IP or domain, based on database by ipip.net. ipip downloads data resources over HTTP, which leaves it vulnerable to MITM attacks.

Vendors
ipip project
Products
ipip
Weakness
CWE-311, CWE-310
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.