CVE-2017-0907
13.11.2017, 17:29
The Recurly Client .NET Library before 1.0.1, 1.1.10, 1.2.8, 1.3.2, 1.4.14, 1.5.3, 1.6.2, 1.7.1, 1.8.1 is vulnerable to a Server-Side Request Forgery vulnerability due to incorrect use of "Uri.EscapeUriString" that could result in compromise of API keys or other critical resources.
Vendor | Product | Version |
---|---|---|
recurly | recurly_client_.net | 1.0.0 |
recurly | recurly_client_.net | 1.0.0:beta1 |
recurly | recurly_client_.net | 1.0.0:beta2 |
recurly | recurly_client_.net | 1.0.0:beta3 |
recurly | recurly_client_.net | 1.0.0:rc1 |
recurly | recurly_client_.net | 1.0.0.1 |
recurly | recurly_client_.net | 1.0.0.2 |
recurly | recurly_client_.net | 1.0.0.3 |
recurly | recurly_client_.net | 1.0.0.4 |
recurly | recurly_client_.net | 1.1.0 |
recurly | recurly_client_.net | 1.1.1 |
recurly | recurly_client_.net | 1.1.4 |
recurly | recurly_client_.net | 1.1.5 |
recurly | recurly_client_.net | 1.1.6 |
recurly | recurly_client_.net | 1.1.7 |
recurly | recurly_client_.net | 1.1.8 |
recurly | recurly_client_.net | 1.1.9 |
recurly | recurly_client_.net | 1.2.0 |
recurly | recurly_client_.net | 1.2.1 |
recurly | recurly_client_.net | 1.2.2 |
recurly | recurly_client_.net | 1.2.5 |
recurly | recurly_client_.net | 1.2.6 |
recurly | recurly_client_.net | 1.2.7 |
recurly | recurly_client_.net | 1.3.0 |
recurly | recurly_client_.net | 1.3.1 |
recurly | recurly_client_.net | 1.4.0 |
recurly | recurly_client_.net | 1.4.1 |
recurly | recurly_client_.net | 1.4.2 |
recurly | recurly_client_.net | 1.4.3 |
recurly | recurly_client_.net | 1.4.4 |
recurly | recurly_client_.net | 1.4.5 |
recurly | recurly_client_.net | 1.4.6 |
recurly | recurly_client_.net | 1.4.7 |
recurly | recurly_client_.net | 1.4.8 |
recurly | recurly_client_.net | 1.4.9 |
recurly | recurly_client_.net | 1.4.10 |
recurly | recurly_client_.net | 1.4.11 |
recurly | recurly_client_.net | 1.4.12 |
recurly | recurly_client_.net | 1.4.13 |
recurly | recurly_client_.net | 1.5.0 |
recurly | recurly_client_.net | 1.6.0 |
recurly | recurly_client_.net | 1.6.1 |
recurly | recurly_client_.net | 1.7.0 |
recurly | recurly_client_.net | 1.8.0 |
𝑥
= Vulnerable software versions
References