ZeroHour

CVE-2020-7655

CVSS 3.1
6.1 medium
EPSS
<1%p55
Published
()
Modified
Description

netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Transfer encoding header parsing which could allow for CL:TE or TE:TE attacks.

Vendors
hive
Products
netius
Weakness
CWE-444
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.