`Host` header injection

0
26

CVSSv3 Score: 4.1

An externally controlled reference to a resource in another sphere vulnerability [CWE-610] in multiple products may allow an unauthenticated attacker to poison web caches between the device and the attacker via crafted HTTP requests, where the Host header points to an arbitrary webserver.

Revised on 2026-01-07 00:00:00

– Read more