V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2024-45410
ANC
HighConfirmedExploit available

Traefik is a golang, Cloud Native Application Proxy. When a HTTP request is processed by Traefik, certain HTTP headers such as X-Forwarded-…

CVSS
8.6
High
EPSS
0.01
p70
Published
2024-01-01
Updated
2024-01-01
Description

Traefik is a golang, Cloud Native Application Proxy. When a HTTP request is processed by Traefik, certain HTTP headers such as X-Forwarded-Host or X-Forwarded-Port are added by Traefik before the request is routed to the application. For a HTTP client, it should not be possible to remove or modify these headers. Since the application trusts the value of these headers, security implications might arise, if they can be modified. For HTTP/1.1, however, it was found that some of theses custom headers can indeed be removed and in certain cases manipulated. The attack relies on the HTTP/1.1 behavior, that headers can be defined as hop-by-hop via the HTTP Connection header. This issue has been addressed in release versions 2.11.9 and 3.1.3. Users are advised to upgrade. There are no known workarounds for this vulnerability.

Tags · CWE
Pre-auth
CWE-345
CAPEC-111
CAPEC-141
CAPEC-142
CAPEC-148
CAPEC-218
CAPEC-384
CAPEC-385
CAPEC-386
CAPEC-387
CAPEC-388
CAPEC-665
CAPEC-701
Affected products
Traefik < 2.11.9Traefik 3.0.0–3.1.3
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
Timeline
2024-01-01
Published
2024-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: C
Changed (C)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: H
High (H)
Availability Impact
A: N
None (N)
Exploit indicators
EPSS
0.015 · p70
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-665 · CWE-345
└ via CAPEC-148 · CWE-345
└ via CAPEC-665 · CWE-345
└ via CAPEC-665 · CWE-345
└ via CAPEC-141 · CWE-345
└ via CAPEC-142 · CWE-345
Known exploits — Сканер-ВС
CVE-2024-45410
github-poc · https://github.com/jphetphoumy/traefik-CVE-2024-45410-poc
Enterprise
Affected products
ProductVendorStatus
Tracked
Tracked
Tracked
traefikTracked
traefik*Tracked
Source databases
ANC
DEB
CVE
Related vulnerabilities