THREATOPS
THREAT OPSThreat News › [NVD] CVE-2021-40143 (HIGH 8.2) — Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.

[NVD] CVE-2021-40143 (HIGH 8.2) — Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.

lownvdPublished 2021-09-07

CVE-2021-40143 CVSS: 8.2 HIGH Published: 2021-09-07T20:15:08.467

Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-40143