cve/2022/CVE-2022-0155.md

29 lines
1.2 KiB
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2022-0155](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0155)
![](https://img.shields.io/static/v1?label=Product&message=follow-redirects%2Ffollow-redirects&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%201.14.7%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-359%20Exposure%20of%20Private%20Personal%20Information%20to%20an%20Unauthorized%20Actor&color=brighgreen)
### Description
follow-redirects is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Avaq/fetch-ts-node
- https://github.com/Avaq/fp-ts-fetch
- https://github.com/Damatoca/Ecovascs-Deebot
- https://github.com/MaySoMusician/geidai-ikoi
- https://github.com/git-kick/ioBroker.e3dc-rscp
- https://github.com/mrbungle64/ecovacs-deebot.js
- https://github.com/mrbungle64/ioBroker.ecovacs-deebot
- https://github.com/mrbungle64/ioBroker.switchbot-ble
- https://github.com/mrbungle64/node-red-contrib-ecovacs-deebot
- https://github.com/noneisland/bot
- https://github.com/zvigrinberg/exhort-service-readiness-experiment