Vulnerabilities
Vulnerable Software
Envoyproxy:  >> Envoy  >> 1.12.2  Security Vulnerabilities
CNCF Envoy through 1.13.0 TLS inspector bypass. TLS inspector could have been bypassed (not recognized as a TLS client) by a client using only TLS 1.3. Because TLS extensions (SNI, ALPN) were not inspected, those connections might have been matched to a wrong filter chain, possibly bypassing some security restrictions in the process.
CVSS Score
5.3
EPSS Score
0.0
Published
2020-03-04


Contact Us

Shodan ® - All rights reserved