通过响应队列投毒将 HTTP 头注入升级为严重漏洞
portswigger.net | 研究 | #bug-bounty | #web-security | #proxy | #http-request-smuggling | #response-queue-poisoning | #header-injection
摘要
James Kettle 将路径型头部注入升级为严重的响应队列投毒:注入 keep-alive 与走私的第二请求以污染其他用户响应,最终获 12,500 美元赏金,可用于前后端两类场景。
- 发布时间
- 收录时间
Skip to content