This repository has been archived by the owner on Sep 21, 2021. It is now read-only.
CVE-2011-1498 Medium Severity Vulnerability detected by WhiteSource #2
Labels
security vulnerability
Security vulnerability detected by WhiteSource
CVE-2011-1498 - Medium Severity Vulnerability
Vulnerable Library - httpclient-4.0.1.jar
HttpComponents Client (base module)
path: /root/.m2/repository/org/apache/httpcomponents/httpclient/4.0.1/httpclient-4.0.1.jar
Library home page: http://hc.apache.org/httpcomponents-client
Dependency Hierarchy:
Vulnerability Details
Apache HttpClient 4.x before 4.1.1 in Apache HttpComponents, when used with an authenticating proxy server, sends the Proxy-Authorization header to the origin server, which allows remote web servers to obtain sensitive information by logging this header.
Publish Date: 2011-07-07
URL: CVE-2011-1498
CVSS 2 Score Details (4.3)
Base Score Metrics not available
Suggested Fix
Type: Upgrade version
Origin: https://bugzilla.redhat.com/show_bug.cgi?id=709531
Release Date: 2017-12-31
Fix Resolution: Upgrade to version httpcomponents-client 4.1.1 or greater
Step up your Open Source Security Game with WhiteSource here
The text was updated successfully, but these errors were encountered: