CVE-2017-12165

2.6LOW

It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.

Publicado: 7/27/2018Atualizado: 11/21/2024

Descrição

It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.

Análise IADesenvolvido por IA

Produtos Afetados

redhatundertow
redhatundertow
redhatundertow
2.0.0
redhatjboss_enterprise_application_platform
7.0.0
redhatjboss_enterprise_application_platform
7.1.0

Referências