Security Advisory

CVE-2014-3620

5

Vulnerability Description

cURL and libcurl before 7.38.0 allow remote attackers to bypass the Same Origin Policy and set cookies for arbitrary sites by setting a cookie for a top-level domain.
Published Date November 18, 2014
Official Source NIST NVD Advisory