Lucene search

K
cvelistMitreCVELIST:CVE-2016-7153
HistorySep 06, 2016 - 10:00 a.m.

CVE-2016-7153

2016-09-0610:00:00
mitre
www.cve.org
8

AI Score

5.4

Confidence

High

EPSS

0.005

Percentile

77.6%

The HTTP/2 protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a “HEIST” attack.

AI Score

5.4

Confidence

High

EPSS

0.005

Percentile

77.6%