Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3mv9-6gw5-j7q6

Опубликовано: 23 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

The Web Client of Parallels Remote Application Server v18.0 is vulnerable to Host Header Injection attacks. This vulnerability allows attackers to execute arbitrary commands via a crafted payload injected into the Host header.

The Web Client of Parallels Remote Application Server v18.0 is vulnerable to Host Header Injection attacks. This vulnerability allows attackers to execute arbitrary commands via a crafted payload injected into the Host header.

EPSS

Процентиль: 67%
0.00546
Низкий

8.1 High

CVSS3

Дефекты

CWE-116

Связанные уязвимости

CVSS3: 8.1
nvd
около 3 лет назад

The Web Client of Parallels Remote Application Server v18.0 is vulnerable to Host Header Injection attacks. This vulnerability allows attackers to execute arbitrary commands via a crafted payload injected into the Host header.

EPSS

Процентиль: 67%
0.00546
Низкий

8.1 High

CVSS3

Дефекты

CWE-116