An issue in dom96 HTTPbeast v.0.4.1 and before allows a remote attacker to send a malicious crafted request due to insufficient parsing in the parser.nim component.
References
Link | Resource |
---|---|
https://gist.github.com/anas-cherni/c95e2fc1fd84d93167eb60193318d0b8 | Third Party Advisory |
https://github.com/dom96/httpbeast/issues/95 | Exploit Issue Tracking |
https://github.com/dom96/httpbeast/pull/96 | Issue Tracking Patch |
https://gist.github.com/anas-cherni/c95e2fc1fd84d93167eb60193318d0b8 | Third Party Advisory |
https://github.com/dom96/httpbeast/issues/95 | Exploit Issue Tracking |
https://github.com/dom96/httpbeast/pull/96 | Issue Tracking Patch |
Configurations
History
21 Nov 2024, 08:37
Type | Values Removed | Values Added |
---|---|---|
References | () https://gist.github.com/anas-cherni/c95e2fc1fd84d93167eb60193318d0b8 - Third Party Advisory | |
References | () https://github.com/dom96/httpbeast/issues/95 - Exploit, Issue Tracking | |
References | () https://github.com/dom96/httpbeast/pull/96 - Issue Tracking, Patch |
21 Mar 2024, 02:49
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) An issue in dom96 HTTPbeast v.0.4.1 and before allows a remote attacker to send a malicious crafted request due to insufficient parsing in the parser.nim component. |
26 Jan 2024, 13:44
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/dom96/httpbeast/issues/95 - Exploit, Issue Tracking | |
References | () https://gist.github.com/anas-cherni/c95e2fc1fd84d93167eb60193318d0b8 - Third Party Advisory | |
References | () https://github.com/dom96/httpbeast/pull/96 - Issue Tracking, Patch | |
CPE | cpe:2.3:a:dom96:httpbeast:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CWE | NVD-CWE-noinfo |
19 Jan 2024, 22:52
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-19 20:15
Updated : 2024-11-21 08:37
NVD link : CVE-2023-50694
Mitre link : CVE-2023-50694
CVE.ORG link : CVE-2023-50694
JSON object : View
Products Affected
dom96
- httpbeast
CWE