Anomali Agave (formerly Drupot) through 1.0.0 fails to avoid fingerprinting by including predictable data and minimal variation in size within HTML templates, giving attackers the ability to detect and avoid this system.
References
Link | Resource |
---|---|
https://github.com/threatstream/agave/issues/1 | Issue Tracking Third Party Advisory |
Configurations
History
No history.
Information
Published : 2019-05-01 18:29
Updated : 2020-08-24 17:37
NVD link : CVE-2019-11641
Mitre link : CVE-2019-11641
CVE.ORG link : CVE-2019-11641
JSON object : View
Products Affected
anomali
- agave
CWE
CWE-330
Use of Insufficiently Random Values