PT-2020-10137 · Silverstripe · Silverstripe Cms+1
Memn0Ps
+2
·
Published
2020-07-15
·
Updated
2022-05-24
·
CVE-2019-19326
CVSS v3.1
5.9
Medium
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Silverstripe CMS versions prior to 4.5
Silverstripe versions prior to 4.5
Description
The issue allows for web cache poisoning through the modification of the
X-Original-Url and X-HTTP-Method-Override headers. This can lead to responses with malicious HTTP headers being returned to other consumers of the cached response.Recommendations
For Silverstripe CMS versions prior to 4.5, consider disabling HTTP Cache Headers on responses served by the framework's HTTP layer as a temporary workaround until a patch is available.
Restrict access to the HTTPRequestBuilder to minimize the risk of exploitation.
Exploit
Fix
HTTP Request/Response Smuggling
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Silverstripe
Silverstripe Cms