The web server Tengine 2.2.2 developed in the Nginx version from 0.5.6 thru 1.13.2 is vulnerable to an integer overflow vulnerability in the nginx range filter module, resulting in the leakage of potentially sensitive information triggered by specially crafted requests.
References
| Link | Resource |
|---|---|
| https://github.com/ZxDecide/Nginx-variants/blob/master/%E9%99%84%E4%BB%B6(Tengine).docx | Exploit Third Party Advisory |
Configurations
Information
Published : 2023-08-22 19:16
Updated : 2023-08-28 21:17
NVD link : CVE-2020-21699
Mitre link : CVE-2020-21699
JSON object : View
Products Affected
alibaba
- tengine
CWE
CWE-190
Integer Overflow or Wraparound
