Improper input validation vulnerability in Node.js - CVE-2019-15606(Macos)Deprecated |
ID: oval:org.secpod.oval:def:83396 | Date: (C)2022-08-26 (M)2024-03-14 |
Class: VULNERABILITY | Family: macos |
The host is installed with Node.js 10.0.0 before 10.19.0, 12.0.0 before 12.15.0, 13.0.0 before 13.8.0 and is prone to an improper input validation vulnerability. A flaw is present in the application which fails to handle trailing white space in HTTP header values. Successful exploitation can allow attackers to bypass of authorization based on header value comparisons.
Platform: |
Apple Mac OS X 10.11 |
Apple Mac OS X 10.12 |
Apple Mac OS X 10.13 |
Apple Mac OS X 10.14 |
Apple Mac OS X 10.15 |
Apple Mac OS 11 |
Apple Mac OS 12 |