REDHAT-BUG-1636274: Medium severity .NET Core vulnerability
A flaw was found in .NET Core. An information disclosure vulnerability in a redirect when authentication information has been added manually to an Authorization header. An attacker who successfully exploited this vulnerability could use the information to further compromise the web application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1636274?
REDHAT-BUG-1636274 is characterized as a moderate severity vulnerability due to its potential for information disclosure.
How do I fix REDHAT-BUG-1636274?
To fix REDHAT-BUG-1636274, you should update to the latest version of .NET Core that addresses this vulnerability.
What type of vulnerability is REDHAT-BUG-1636274?
REDHAT-BUG-1636274 is an information disclosure vulnerability affecting .NET Core.
Who is affected by REDHAT-BUG-1636274?
Any application utilizing an affected version of .NET Core that manually adds authentication information to the Authorization header is at risk from REDHAT-BUG-1636274.
Can REDHAT-BUG-1636274 lead to a web application compromise?
Yes, if successfully exploited, REDHAT-BUG-1636274 could provide an attacker with information to further compromise the web application.