ID:3641 - Exploit for Permissions, Privileges, and Access Controls in nginx - CVE-2013-4547

 
Main Vulnerability Database Exploits ID:3641 - Exploit for Permissions, Privileges, and Access Controls in nginx - CVE-2013-4547

ID:3641 - Exploit for Permissions, Privileges, and Access Controls in nginx - CVE-2013-4547

Published: July 29, 2020


Vulnerability identifier: #VU32617
Vulnerability risk: Medium
CVE-ID: CVE-2013-4547
CWE-ID: CWE-264
Exploitation vector: Remote access
Vulnerable software:
nginx

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to read and manipulate data.

nginx 0.8.41 through 1.4.3 and 1.5.x before 1.5.7 allows remote attackers to bypass intended restrictions via an unescaped space character in a URI.


Remediation

Install update from vendor's website.