Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-7407

The ourWriteOut function in tool_writeout.c in curl 7.53.1 might allow physically proximate attackers to obtain sensitive information from process memory in opportunistic circumstances by reading a workstation screen during use of a --write-out argument ending in a '%' character, which leads to a heap-based buffer over-read.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 42.3%
CVSS Severity
CVSS v3 Score 2.4
CVSS v2 Score 2.1
Products affected by CVE-2017-7407
  • Haxx » Curl » Version: 7.53.1
    cpe:2.3:a:haxx:curl:7.53.1


Contact Us

Shodan ® - All rights reserved