V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2023-46218
ANC
Medium

This flaw allows a malicious HTTP server to set "super cookies" in curl that are then passed back to more origins than what is otherwise al…

CVSS
5.3
Medium
EPSS
0.00
p44
Published
2023-01-01
Updated
2023-01-01
Description

This flaw allows a malicious HTTP server to set "super cookies" in curl that are then passed back to more origins than what is otherwise allowed or possible. This allows a site to set cookies that then would get sent to different and unrelated sites and domains. It could do this by exploiting a mixed case flaw in curl's function that verifies a given cookie domain against the Public Suffix List (PSL). For example a cookie could be set with `domain=co.UK` when the URL used a lower case hostname `curl.co.uk`, even though `co.uk` is listed as a PSL domain.

Tags · CWE
Pre-auth
CWE-178
CWE-201
CAPEC-12
CAPEC-217
CAPEC-612
CAPEC-613
CAPEC-618
CAPEC-619
CAPEC-621
CAPEC-622
CAPEC-623
Affected products
CurlCurlCurlCurlCurlCurlCurlCurlCurlCurlCurlCurlCurlCurlCurlCurlCurlJbcs-httpd24-curlJbcs-httpd24-curl
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Timeline
2023-01-01
Published
2023-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: L
Low (L)
Integrity Impact
I: N
None (N)
Availability Impact
A: N
None (N)
Exploit indicators
EPSS
0.002 · p44
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected software
ProductVendorStatus
Tracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
curlTracked
jbcs-httpd24-curlTracked
jbcs-httpd24-curlTracked
Source databases
ANC
AST
DEB
CVE
RED
UBU
Related vulnerabilities