Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hcrr-5fhg-v2r7

Опубликовано: 23 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 3.1

Описание

Host Header Injection vulnerability in the HCL BigFix OSD Bare Metal Server version 311.12 or lower allows attacker to supply invalid input to cause the OSD Bare Metal Server to perform a redirect to an attacker-controlled domain.

Host Header Injection vulnerability in the HCL BigFix OSD Bare Metal Server version 311.12 or lower allows attacker to supply invalid input to cause the OSD Bare Metal Server to perform a redirect to an attacker-controlled domain.

EPSS

Процентиль: 38%
0.00166
Низкий

3.1 Low

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 3.1
nvd
больше 2 лет назад

Host Header Injection vulnerability in the HCL BigFix OSD Bare Metal Server version 311.12 or lower allows attacker to supply invalid input to cause the OSD Bare Metal Server to perform a redirect to an attacker-controlled domain.

EPSS

Процентиль: 38%
0.00166
Низкий

3.1 Low

CVSS3

Дефекты

CWE-74