描述
An issue was discovered in zeek version 4.1.0. There is a HTTP request splitting vulnerability that will invalidate any ZEEK HTTP based security analysis. NOTE: the vendor's position is that the observed behavior is intended
AI分析AI驱动
受影响产品
zeekzeek
4.1.0
参考资料
- https://github.com/zeek/zeek/issues/1798ExploitIssue TrackingThird Party Advisory
- https://github.com/zeek/zeek/issues/1798ExploitIssue TrackingThird Party Advisory