CVE-2015-5168
CRITICALApache Traffic Server <5.3.2 HTTP/2 Experimental Feature - Impact Unknown
Title source: manualDescription
Unspecified vulnerability in the HTTP/2 experimental feature in Apache Traffic Server 5.3.x before 5.3.2 has unknown impact and attack vectors, a different vulnerability than CVE-2015-5206.
References (1)
Core 1
Core References
Various Sources mailing-list
x_refsource_mlist
http://mail-archives.us.apache.org/mod_mbox/www-announce/201509.mbox/%3CCABF6JR2j5vesvnjbm6sDPB_zAGj3kNgzzHEpLUh6dWG6t8mC2w%40mail.gmail.com%3E
Scores
CVSS v3
9.8
EPSS
0.0188
EPSS Percentile
83.4%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
Status
published
Products (2)
apache/traffic_server
5.3.0
apache/traffic_server
5.3.1
Published
Sep 13, 2017
Tracked Since
Feb 18, 2026