Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/NancyFx/Nancy/releases/tag/v1.4.4 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: hpe
Published: 2017-07-20T12:00:00
Updated: 2024-08-05T17:18:01.926Z
Reserved: 2017-06-21T00:00:00
Link: CVE-2017-9785
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-07-20T12:29:00.187
Modified: 2024-11-21T03:36:50.337
Link: CVE-2017-9785
Redhat
No data.