Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mrjimenez

#26088of 53,635
9.8Total CVSS
Vulnerabilities · 1
PT-2021-18232
9.8
2021-04-20
Unknown · Portable Sdk For Upnp Devices · CVE-2021-29462
Name of the Vulnerable Software and Affected Versions: Portable SDK for UPnP Devices versions prior to 1.14.6 Description: The server part of pupnp (libupnp) is susceptible to DNS rebinding attacks due to its failure to check the value of the `Host` header. This issue can be mitigated by utilizing DNS resolvers that block DNS-rebinding attacks. Recommendations: For versions prior to 1.14.6, update to version 1.14.6 or later to resolve the issue. As a temporary workaround, consider using DNS resolvers that block DNS-rebinding attacks to minimize the risk of exploitation.