Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ja1Sh

#36395of 53,624
7.5Total CVSS
Vulnerabilities · 1
PT-2021-11660
7.5
2021-03-10
Expressvpn · Expressvpn Router · CVE-2020-29238
Name of the Vulnerable Software and Affected Versions: ExpressVPN Router version 1 Description: An integer buffer overflow in the Nginx webserver allows remote attackers to obtain sensitive information when the server is running as a reverse proxy via specially crafted requests. Recommendations: For ExpressVPN Router version 1, update to a version that fixes the integer buffer overflow issue in the Nginx webserver. As a temporary workaround, consider restricting access to the reverse proxy functionality until a patch is available.