
We found results for “”
CVE-2024-38311
Date: March 6, 2025
ATS is vulnerable to equest smuggling via pipelining after a chunked message body. This affects ATS 9.0.0 to 9.2.8, and ATS 10.0.0 to 10.0.3. 9.x users should upgrade to 9.2.9 or later versions, 10.x users should upgrade to 10.0.4 or later versions.
Severity Score
Severity Score
Weakness Type (CWE)
Improper Input Validation
CWE-20CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | NETWORK |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | LOW |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | LOW |
Integrity (I): | LOW |
Availability (A): | LOW |