Vulnerability Description
netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Transfer encoding header parsing which could allow for CL:TE or TE:TE attacks.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hive | Netius | < 1.17.58 |
Related Weaknesses (CWE)
References
- https://snyk.io/vuln/SNYK-PYTHON-NETIUS-569141PatchThird Party Advisory
- https://snyk.io/vuln/SNYK-PYTHON-NETIUS-569141PatchThird Party Advisory
FAQ
What is CVE-2020-7655?
CVE-2020-7655 is a vulnerability with a CVSS score of 6.1 (MEDIUM). netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Transfer encoding header parsing which could al...
How severe is CVE-2020-7655?
CVE-2020-7655 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-7655?
Check the references section above for vendor advisories and patch information. Affected products include: Hive Netius.