Description
ipip-coffee queries geolocation information from IP ipip-coffee downloads geolocation resources over HTTP, which leaves it vulnerable to MITM attacks. This could impact the integrity and availability of the data being used to make geolocation decisions by an application.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-0314 | ipip-coffee queries geolocation information from IP ipip-coffee downloads geolocation resources over HTTP, which leaves it vulnerable to MITM attacks. This could impact the integrity and availability of the data being used to make geolocation decisions by an application. |
Github GHSA |
GHSA-m8pw-h8qj-rgj9 | ipip-coffee downloads Resources over HTTP |
References
| Link | Providers |
|---|---|
| https://nodesecurity.io/advisories/279 |
|
History
No history.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-09-17T01:16:06.952Z
Reserved: 2017-10-29T00:00:00.000Z
Link: CVE-2016-10673
No data.
Status : Modified
Published: 2018-06-04T16:29:01.923
Modified: 2024-11-21T02:44:29.223
Link: CVE-2016-10673
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA