CVE-2021-30185
07.04.2021, 14:15
CERN Indico before 2.3.4 can use an attacker-supplied Host header in a password reset link.Enginsight
Vendor | Product | Version |
---|---|---|
cern | indico | 𝑥 < 2.3.4 |
𝑥
= Vulnerable software versions
CERN Indico before 2.3.4 can use an attacker-supplied Host header in a password reset link.Enginsight
Vendor | Product | Version |
---|---|---|
cern | indico | 𝑥 < 2.3.4 |