CVE-2021-40143
07.09.2021, 20:15
Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.
Vendor | Product | Version |
---|---|---|
sonatype | nexus_repository_manager_3 | 3.0.0 ≤ 𝑥 < 3.34.0 |
𝑥
= Vulnerable software versions