Vulnerabilities
Vulnerable Software
Golang:  >> Go  >> 1.11.5  Security Vulnerabilities
An issue was discovered in net/http in Go 1.11.5. CRLF injection is possible if the attacker controls a url parameter, as demonstrated by the second argument to http.NewRequest with \r\n followed by an HTTP header or a Redis command.
CVSS Score
6.1
EPSS Score
0.033
Published
2019-03-13
Go through 1.12 on Windows misuses certain LoadLibrary functionality, leading to DLL injection.
CVSS Score
7.8
EPSS Score
0.005
Published
2019-03-08


Contact Us

Shodan ® - All rights reserved