PT-2019-12026 · Httpie+2 · Httpie+2

Giulio Comi

·

Publicado

2019-08-23

·

Atualizado

2024-06-15

·

CVE-2019-10751

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HTTPie versions prior to 1.0.3
Description The issue allows an attacker to perform an Open Redirect, enabling them to write an arbitrary file with a supplied filename and content to the current directory. This is achieved by redirecting a request from HTTP to a crafted URL pointing to a server under the attacker's control.
Recommendations For versions prior to 1.0.3, update to version 1.0.3 or later to resolve the issue.

Exploit

Correção

Open Redirect

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2020-3473
ALT-PU-2020-3511
CVE-2019-10751
DLA-1937-1
GHSA-XJJG-VMW6-C2P9
MGASA-2019-0351
OPENSUSE-SU-2019:2050-1
OPENSUSE-SU-2019:2089-1
OPENSUSE-SU-2019_2050-1
OPENSUSE-SU-2024:10849-1
PYSEC-2019-23
SNYK-PYTHON-HTTPIE-460107

Produtos afetados

Alt Linux
Httpie
Suse