Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-8492
HistoryJan 30, 2020 - 7:15 p.m.

Code injection

2020-01-3019:15:00
PRIOn knowledge base
www.prio-n.com
23

6.7 Medium

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

78.5%

Python 2.7 through 2.7.17, 3.5 through 3.5.9, 3.6 through 3.6.10, 3.7 through 3.7.6, and 3.8 through 3.8.1 allows an HTTP server to conduct Regular Expression Denial of Service (ReDoS) attacks against a client because of urllib.request.AbstractBasicAuthHandler catastrophic backtracking.

References