CVE-2020-10108

CVE-2020-10108

In Twisted Web through 19.10.0, there was an HTTP request splitting vulnerability. When presented with two content-length headers, it ignored the first header. When the second content-length value was set to zero, the request body was interpreted as a pipelined request.

Source: CVE-2020-10108

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다