Page 2 of 11 results (0.003 seconds)

CVSS: 5.3EPSS: 0%CPEs: 2EXPL: 0

14 Oct 2014 — Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive information by reading the Proxy-Authorization header in a redirected request. Requests (también conocido como python-requests) anterior a 2.3.0 permite a servidores remotos obtener información sensible leyendo la cabecera en 'Proxy-Authorization' con una petición de redirección. Python-requests was found to have a vulnerability, where the attacker can retrieve the passwords from ~/.netrc file through redirect requests, if... • http://advisories.mageia.org/MGASA-2014-0409.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •