url.c in GNU Wget through 1.24.5... CVE-2024-38428

- AV AC AU C I A
发布: 2024-09-04
修订: 2025-04-13

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息