Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gv64-36xp-c47j

Опубликовано: 25 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

A Host Header Injection vulnerability in TRMTracker application may allow an attacker by modifying the host header value in an HTTP request to leverage multiple attack vectors, including defacing the site content through web-cache poisoning.

A Host Header Injection vulnerability in TRMTracker application may allow an attacker by modifying the host header value in an HTTP request to leverage multiple attack vectors, including defacing the site content through web-cache poisoning.

EPSS

Процентиль: 41%
0.00195
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-644
CWE-74

Связанные уязвимости

CVSS3: 6.1
nvd
11 месяцев назад

A Host Header Injection vulnerability in TRMTracker application may allow an attacker by modifying the host header value in an HTTP request to leverage multiple attack vectors, including defacing the site content through web-cache poisoning.

EPSS

Процентиль: 41%
0.00195
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-644
CWE-74