Lucene search

K
osvGoogleOSV:CVE-2016-1000107
HistoryDec 10, 2019 - 6:15 p.m.

CVE-2016-1000107

2019-12-1018:15:09
Google
osv.dev
3

6.9 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

62.1%

inets in Erlang possibly 22.1 and earlier follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application’s outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, aka an “httpoxy” issue.

6.9 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

62.1%