Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vhfp-p9xr-gg6w

Опубликовано: 01 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Host\u2019 header values to poison a web cache or trigger redirections.

Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Host\u2019 header values to poison a web cache or trigger redirections.

EPSS

Процентиль: 62%
0.00436
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-116

Связанные уязвимости

CVSS3: 5.4
nvd
около 3 лет назад

Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Host\u2019 header values to poison a web cache or trigger redirections.

EPSS

Процентиль: 62%
0.00436
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-116