Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:5080
HistorySep 13, 2017 - 7:34 a.m.

Regular Expression Denial Of Service (ReDoS)

2017-09-1307:34:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.001 Low

EPSS

Percentile

44.7%

content is vulnerable to regular expression denial of service (ReDoS) attacks. Attackers can use malicious content-type or content-disposition headers to trigger the attack since it does not properly handle the OWS parametes in the headers.

CPENameOperatorVersion
contentle3.0.5

0.001 Low

EPSS

Percentile

44.7%