netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Transfer encoding header parsing which could allow for CL:TE or TE:TE attacks.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-0115 | netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Transfer encoding header parsing which could allow for CL:TE or TE:TE attacks. |
Github GHSA |
GHSA-wm2m-xrrp-j74c | HTTP Request Smuggling in netius |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://snyk.io/vuln/SNYK-PYTHON-NETIUS-569141 |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-08-04T09:33:20.004Z
Reserved: 2020-01-21T00:00:00
Link: CVE-2020-7655
No data.
Status : Modified
Published: 2020-05-21T15:15:09.890
Modified: 2024-11-21T05:37:33.110
Link: CVE-2020-7655
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA