[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

HTTP request smuggling vulnerability in Node.js - CVE-2020-8201(MacOS)

ID: oval:org.secpod.oval:def:83391Date: (C)2022-08-26   (M)2023-12-03
Class: VULNERABILITYFamily: macos




The host is installed with Node.js 14.0.0 before 14.11.0 and is prone to a HTTP request smuggling vulnerability. A flaw is present in the application which fails to handle malicious payloads. Successful exploitation allows an attacker to hijack user sessions, poison cookies, perform clickjacking and a multitude of other attacks depending on the architecture of the underlying system.

Platform:
Apple Mac OS 14
Apple Mac OS 13
Apple Mac OS X 10.11
Apple Mac OS X 10.12
Apple Mac OS X 10.13
Apple Mac OS X 10.14
Apple Mac OS X 10.15
Apple Mac OS 11
Apple Mac OS 12
Product:
Node.js
Reference:
CVE-2020-8201
CVE    1
CVE-2020-8201

© SecPod Technologies