PT-2020-12863 · Qdpm · Qdpm

Published

2020-04-16

·

Updated

2020-04-22

·

CVE-2020-11814

CVSS v2.0

5.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions qdPM version 9.1
Description A Host Header Injection issue may allow an attacker to spoof a particular header and redirect users to malicious websites.
Recommendations For qdPM version 9.1, update to a version that includes a fix for this issue, as no specific workaround is provided for this version.

Exploit

Fix

Special Elements Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-11814

Affected Products

Qdpm