CNNVD-202601-4554 Information

CNNVD ID

CNNVD-202601-4554

CVE-2020-36941

  • CNNVD Published: 2026-01-27

Description (Chinese)

Knock Subdomain Scan是Gianni Amato个人开发者的一个域名扫描工具。 Knock Subdomain Scan 4.1.1版本存在安全漏洞,该漏洞源于未过滤服务器标头,可能导致CSV注入攻击。

Description (English)

Knock Subdomain Scan is a domain-name scanning tool for Gianni Amato personal developers. There is a security loophole in the Knock Subdomain Scan 4.1.1 version, which originates from unfiltered server headers and could lead to an attack by CSV.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2026-01-27

Last Modified

2026-02-24

References

https://github.com/guelfoweb/knock https://www.exploit-db.com/exploits/49342 https://www.vulncheck.com/advisories/knockpy-csv-injection

Patch

https://github.com/guelfoweb/knock/releases

Share on: