PT-2020-10137 · Silverstripe · Silverstripe Cms+1

Memn0Ps

+2

·

Published

2020-07-15

·

Updated

2022-05-24

·

CVE-2019-19326

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Silverstripe CMS versions prior to 4.5 Silverstripe versions prior to 4.5
Description The issue allows for web cache poisoning through the modification of the X-Original-Url and X-HTTP-Method-Override headers. This can lead to responses with malicious HTTP headers being returned to other consumers of the cached response.
Recommendations For Silverstripe CMS versions prior to 4.5, consider disabling HTTP Cache Headers on responses served by the framework's HTTP layer as a temporary workaround until a patch is available. Restrict access to the HTTPRequestBuilder to minimize the risk of exploitation.

Exploit

Fix

HTTP Request/Response Smuggling

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-19326
GHSA-Q9FF-3Q93-FM8M

Affected Products

Silverstripe
Silverstripe Cms