ZeroHour

CVE-2020-5401

CVSS 3.1
5.3 medium
EPSS
1%p62
Published
()
Modified
Description

Cloud Foundry Routing Release, versions prior to 0.197.0, contains GoRouter, which allows malicious clients to send invalid headers, causing caching layers to reject subsequent legitimate clients trying to access the app.

Vendors
cloudfoundry
Products
routing release
Weakness
CWE-393, CWE-444
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.