netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Transfer encoding header parsing which could allow for CL:TE or TE:TE attacks.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-0115 netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Transfer encoding header parsing which could allow for CL:TE or TE:TE attacks.
Github GHSA Github GHSA GHSA-wm2m-xrrp-j74c HTTP Request Smuggling in netius
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: snyk

Published:

Updated: 2024-08-04T09:33:20.004Z

Reserved: 2020-01-21T00:00:00

Link: CVE-2020-7655

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-05-21T15:15:09.890

Modified: 2024-11-21T05:37:33.110

Link: CVE-2020-7655

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses