PT-2019-12026 · Httpie+2 · Httpie+2

Giulio Comi

·

Published

2019-08-23

·

Updated

2024-06-15

·

CVE-2019-10751

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HTTPie versions prior to 1.0.3
Description The issue allows an attacker to perform an Open Redirect, enabling them to write an arbitrary file with a supplied filename and content to the current directory. This is achieved by redirecting a request from HTTP to a crafted URL pointing to a server under the attacker's control.
Recommendations For versions prior to 1.0.3, update to version 1.0.3 or later to resolve the issue.

Exploit

Fix

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-3473
ALT-PU-2020-3511
CVE-2019-10751
DLA-1937-1
GHSA-XJJG-VMW6-C2P9
MGASA-2019-0351
OPENSUSE-SU-2019:2050-1
OPENSUSE-SU-2019:2089-1
OPENSUSE-SU-2019_2050-1
OPENSUSE-SU-2024:10849-1
PYSEC-2019-23
SNYK-PYTHON-HTTPIE-460107

Affected Products

Alt Linux
Httpie
Suse