Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.143920
Categoría:Web Servers
Título:nginx <= 1.18.0 HTTP Request Smuggling Vulnerability
Resumen:Deprecated since the CVE has been rejected: 'Reason: This candidate was; withdrawn. Further investigation showed that it was not a security issue.';; nginx allows an HTTP request smuggling attack that can lead to cache; poisoning, credential hijacking, or security bypass.
Descripción:Summary:
Deprecated since the CVE has been rejected: 'Reason: This candidate was
withdrawn. Further investigation showed that it was not a security issue.'

nginx allows an HTTP request smuggling attack that can lead to cache
poisoning, credential hijacking, or security bypass.

Affected Software/OS:
nginx version 1.18.0 and prior.

Solution:
No solution was made available by the vendor. General solution options
are to upgrade to a newer release, disable respective features, remove the product or replace the product by
another one.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:N/A:N

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2020-12440
CopyrightCopyright (C) 2020 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.