Loading vulnerability details…
CVSS v3.1
N/A
EPSS
4.32%
Published
Aug 1, 2018
Modified
Nov 20, 2024
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
curl before version 7.51.0 uses outdated IDNA 2003 standard to handle International Domain Names and this may lead users to potentially and unknowingly issue network transfer requests to the wrong host.
Weaknesses (CWE)
Affected Products (1)
References (20)