Vulnerability Details CVE-2013-4547
nginx 0.8.41 through 1.4.3 and 1.5.x before 1.5.7 allows remote attackers to bypass intended restrictions via an unescaped space character in a URI.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.937
EPSS Ranking 99.8%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2013-4547
-
cpe:2.3:a:f5:nginx:0.8.41
-
cpe:2.3:a:f5:nginx:0.8.42
-
cpe:2.3:a:f5:nginx:0.8.43
-
cpe:2.3:a:f5:nginx:0.8.44
-
cpe:2.3:a:f5:nginx:0.8.45
-
cpe:2.3:a:f5:nginx:0.8.46
-
cpe:2.3:a:f5:nginx:0.8.47
-
cpe:2.3:a:f5:nginx:0.8.48
-
cpe:2.3:a:f5:nginx:0.8.49
-
cpe:2.3:a:f5:nginx:0.8.50
-
cpe:2.3:a:f5:nginx:0.8.51
-
cpe:2.3:a:f5:nginx:0.8.52
-
cpe:2.3:a:f5:nginx:0.8.53
-
cpe:2.3:a:f5:nginx:0.8.54
-
cpe:2.3:a:f5:nginx:0.8.55
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:a:f5:nginx:1.0.10
-
cpe:2.3:a:f5:nginx:1.0.11
-
cpe:2.3:a:f5:nginx:1.0.12
-
cpe:2.3:a:f5:nginx:1.0.13
-
cpe:2.3:a:f5:nginx:1.0.14
-
cpe:2.3:a:f5:nginx:1.0.15
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:a:f5:nginx:1.1.10
-
cpe:2.3:a:f5:nginx:1.1.11
-
cpe:2.3:a:f5:nginx:1.1.12
-
cpe:2.3:a:f5:nginx:1.1.13
-
cpe:2.3:a:f5:nginx:1.1.14
-
cpe:2.3:a:f5:nginx:1.1.15
-
cpe:2.3:a:f5:nginx:1.1.16
-
cpe:2.3:a:f5:nginx:1.1.17
-
cpe:2.3:a:f5:nginx:1.1.18
-
cpe:2.3:a:f5:nginx:1.1.19
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:a:f5:nginx:1.3.10
-
cpe:2.3:a:f5:nginx:1.3.11
-
cpe:2.3:a:f5:nginx:1.3.12
-
cpe:2.3:a:f5:nginx:1.3.13
-
cpe:2.3:a:f5:nginx:1.3.14
-
cpe:2.3:a:f5:nginx:1.3.15
-
cpe:2.3:a:f5:nginx:1.3.16
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:a:suse:lifecycle_management_server:1.3
-
cpe:2.3:a:suse:studio_onsite:1.3
-
cpe:2.3:a:suse:webyast:1.3
-
cpe:2.3:o:opensuse:opensuse:11.4
-
cpe:2.3:o:opensuse:opensuse:12.2
-
cpe:2.3:o:opensuse:opensuse:12.3
-
cpe:2.3:o:opensuse:opensuse:13.1