CVE-2022-27775
CVE-2022-27775
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.5EPSS 2.8%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
01 Jun 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An information disclosure vulnerability exists in curl 7.65.0 to 7.82.0 are vulnerable that by using an IPv6 address that was in the connection pool but with a different zone id it could reuse a connection instead.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
n/a · https://github.com/curl/curlWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →