CVE-2020-8184
CVE-2020-8184
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 2.9%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
19 Jun 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A reliance on cookies without validation/integrity check security vulnerability exists in rack < 2.2.3, rack < 2.1.4 that makes it is possible for an attacker to forge a secure or host-only cookie prefix.
Affected products
n/a · https://github.com/rack/rackWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →