When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a"sister site" to deny service to all siblings.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/JtMotoX/docker-trivy
- https://github.com/a23au/awe-base-images
- https://github.com/fokypoky/places-list
- https://github.com/holmes-py/reports-summary
- https://github.com/jercle/awe-base-images
- https://github.com/karimhabush/cyberowl
- https://github.com/pankajkryadav/Hacktivity
- https://github.com/stkcat/awe-base-images