Beveiligingsadvies

CVE-2016-7903

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-01-04 21:00:00
Laatst bijgewerkt 2024-08-06 02:13:20
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.