Vulnerability Description
An integer buffer overflow in the Nginx webserver of ExpressVPN Router version 1 allows remote attackers to obtain sensitive information when the server running as reverse proxy via specially crafted request.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Expressvpn | Expressvpn | 1.0 |
Related Weaknesses (CWE)
References
- http://expressvpn.comVendor Advisory
- http://ja1sharma.com/blog/2021/CVE-2020-29238/Third Party Advisory
- http://packetstormsecurity.com/files/162152/ExpressVPN-VPN-Router-1.0-Integer-OvThird Party AdvisoryVDB Entry
- https://bugcrowd.com/disclosures/4e8d5325-8e49-4ea3-962a-a088bbb73a3f/expressvpnThird Party Advisory
- http://expressvpn.comVendor Advisory
- http://ja1sharma.com/blog/2021/CVE-2020-29238/Third Party Advisory
- http://packetstormsecurity.com/files/162152/ExpressVPN-VPN-Router-1.0-Integer-OvThird Party AdvisoryVDB Entry
- https://bugcrowd.com/disclosures/4e8d5325-8e49-4ea3-962a-a088bbb73a3f/expressvpnThird Party Advisory
FAQ
What is CVE-2020-29238?
CVE-2020-29238 is a vulnerability with a CVSS score of 7.5 (HIGH). An integer buffer overflow in the Nginx webserver of ExpressVPN Router version 1 allows remote attackers to obtain sensitive information when the server running as reverse proxy via specially crafted ...
How severe is CVE-2020-29238?
CVE-2020-29238 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-29238?
Check the references section above for vendor advisories and patch information. Affected products include: Expressvpn Expressvpn.