THREAT OPS › Threat News › [NVD] CVE-2021-40143 (HIGH 8.2) — Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.
[NVD] CVE-2021-40143 (HIGH 8.2) — Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.
CVE-2021-40143 CVSS: 8.2 HIGH Published: 2021-09-07T20:15:08.467
Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.
Indicators of compromise
- CVE-2021-40143cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-40143