5

CVE-2006-2769

Exploit

The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after the URL and before the HTTP declaration.

Data is provided by the National Vulnerability Database (NVD)
SourcefireSnort Version2.4
SourcefireSnort Version2.4.1
SourcefireSnort Version2.4.2
SourcefireSnort Version2.4.3
SourcefireSnort Version2.4.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 20.46% 0.953
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P