CVE-2016-7152
medium · 5.3The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.
5.3
CVSS
14.0%
EPSS (exploit prob.)
96th
EPSS percentile
2016-09-06
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Weaknesses
CWE-200
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| opera | opera | all versions |
| apple | safari | all versions |
| mozilla | firefox | all versions |
| microsoft | edge | all versions |
| microsoft | internet_explorer | all versions |
| chrome | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://arstechnica.com/security/2016/08/new-attack-steals-ssns-e-mail-addresses-and-more-from-https-pages/
- http://www.securityfocus.com/bid/92769
- http://www.securitytracker.com/id/1036741
- http://www.securitytracker.com/id/1036742
- http://www.securitytracker.com/id/1036743
- http://www.securitytracker.com/id/1036744
- http://www.securitytracker.com/id/1036745
- http://www.securitytracker.com/id/1036746
- https://tom.vg/papers/heist_blackhat2016.pdf
- http://arstechnica.com/security/2016/08/new-attack-steals-ssns-e-mail-addresses-and-more-from-https-pages/
- http://www.securityfocus.com/bid/92769
- http://www.securitytracker.com/id/1036741
- http://www.securitytracker.com/id/1036742
- http://www.securitytracker.com/id/1036743
- http://www.securitytracker.com/id/1036744
- http://www.securitytracker.com/id/1036745
- http://www.securitytracker.com/id/1036746
- https://tom.vg/papers/heist_blackhat2016.pdf
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2016-7152