[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2023-2024-496 --- haproxy

ID: oval:org.secpod.oval:def:19500588Date: (C)2024-02-13   (M)2024-02-13
Class: PATCHFamily: unix




HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server

Platform:
Amazon Linux 2023
Product:
haproxy
Reference:
ALAS2023-2024-496
CVE-2023-45539
CVE    1
CVE-2023-45539
CPE    1
cpe:/a:haproxy:haproxy

© SecPod Technologies