CVE-2021-30185
EUVD-2021-010107.04.2021, 14:15
CERN Indico before 2.3.4 can use an attacker-supplied Host header in a password reset link.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cern | indico | 𝑥 < 2.3.4 |
𝑥
= Vulnerable software versions