Vulnerabilities > CVE-2018-19991 - Improper Handling of Exceptional Conditions vulnerability in Verynginx Project Verynginx 0.3.3
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
VeryNginx 0.3.3 allows remote attackers to bypass the Web Application Firewall feature because there is no error handler (for get_uri_args or get_post_args) to block the API misuse described in CVE-2018-9230.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |