← Back

CVE-2017-5660

nvd nist
Published: Feb 27, 2018Modified: Nov 21, 2024

JSON object

Loading...
8.6
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 4.0
Source: NVD

Description

There is a vulnerability in Apache Traffic Server (ATS) 6.2.0 and prior and 7.0.0 and prior with the Host header and line folding. This can have issues when interacting with upstream proxies and the wrong host being used.

Affected (10)

1 product
Traffic Server
1 product
Debian Linux
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Apache
Up to 6.2.0
Version 6.2.1
Version 6.2.1 rc0
Version 6.2.2
Version 6.2.2 rc0
Version 7.0.0
Version 7.0.0 rc0
Version 7.0.0 rc1
Version 7.0.0 rc2
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 9.0

Timeline

No history available yet.