mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-04 22:18:13 +02:00
18 lines
780 B
Markdown
18 lines
780 B
Markdown
### [CVE-2020-21699](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-21699)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
The web server Tengine 2.2.2 developed in the Nginx version from 0.5.6 thru 1.13.2 is vulnerable to an integer overflow vulnerability in the nginx range filter module, resulting in the leakage of potentially sensitive information triggered by specially crafted requests.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://github.com/ZxDecide/Nginx-variants/blob/master/%E9%99%84%E4%BB%B6(Tengine).docx
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|