GNU Wget (1.7 thru 1.19.4) Cookie Injection [CVE-2018-0494]
In Summary : Normally a website should not be able to set cookies for other domains. Due to insufficient input validation GNU Wget can be ...
https://updatesinfosec.blogspot.com/2018/05/gnu-wget-17-thru-1194-cookie-injection.html
In Summary :
kindly refer the following link as follow up :
https://ift.tt/2KH1WtP
Normally a website should not be able to set cookies for other domains. Due to insufficient input validation GNU Wget can be tricked into storing arbitrary cookie values to the cookie jar file, bypassing this security restriction[...]
kindly refer the following link as follow up :
https://ift.tt/2KH1WtP