Lucene search

K
cveGitHub_MCVE-2022-36032
HistorySep 06, 2022 - 7:15 p.m.

CVE-2022-36032

2022-09-0619:15:08
CWE-565
CWE-20
GitHub_M
web.nvd.nist.gov
64
6
reactphp
http
security
cve-2022-36032
cookie
server
reverse proxy
nvd

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

AI Score

5.2

Confidence

High

EPSS

0.001

Percentile

36.7%

ReactPHP HTTP is a streaming HTTP client and server implementation for ReactPHP. In ReactPHP’s HTTP server component versions starting with 0.7.0 and prior to 1.7.0, when ReactPHP is processing incoming HTTP cookie values, the cookie names are url-decoded. This may lead to cookies with prefixes like __Host- and __Secure- confused with cookies that decode to such prefix, thus leading to an attacker being able to forge cookie which is supposed to be secure. This issue is fixed in ReactPHP HTTP version 1.7.0. As a workaround, Infrastructure or DevOps can place a reverse proxy in front of the ReactPHP HTTP server to filter out any unexpected Cookie request headers.

Affected configurations

Nvd
Vulners
Node
reactphphttpRange0.7.01.7.0
VendorProductVersionCPE
reactphphttp*cpe:2.3:a:reactphp:http:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "http",
    "vendor": "reactphp",
    "versions": [
      {
        "status": "affected",
        "version": ">= 0.7.0, < 1.7.0"
      }
    ]
  }
]

Social References

More

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

AI Score

5.2

Confidence

High

EPSS

0.001

Percentile

36.7%