Security Advisory

CVE-2021-38290

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-08-09 10:58:28
Last updated 2024-08-04 01:37:16
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A host header attack vulnerability exists in FUEL CMS 1.5.0 through fuel/modules/fuel/config/fuel_constants.php and fuel/modules/fuel/libraries/Asset.php. An attacker can use a man in the middle attack such as phishing.