Vulnerabilities
Vulnerable Software
Haproxy:  >> Haproxy  >> 1.4.1  Security Vulnerabilities
HAProxy 1.4 before 1.4.24 and 1.5 before 1.5-dev19, when configured to use hdr_ip or other "hdr_*" functions with a negative occurrence count, allows remote attackers to cause a denial of service (negative array index usage and crash) via an HTTP header with a certain number of values, related to the MAX_HDR_HISTORY variable.
CVSS Score
5.0
EPSS Score
0.001
Published
2013-08-19
Buffer overflow in the trash buffer in the header capture functionality in HAProxy before 1.4.21, when global.tune.bufsize is set to a value greater than the default and header rewriting is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors.
CVSS Score
5.1
EPSS Score
0.002
Published
2012-05-27


Contact Us

Shodan ® - All rights reserved