Threat Encyclopedia

Host Head Injection Vulnerability for Endpoint Protector

description-logoDescription

CoSoSys Endpoint Protector 5.1.0.2 allows Host Header Injection which allows an attackers to use web-cache poisoning to import scripts and even generate password resets links with its value.

affected-products-logoAffected Products

Endpoint Protector

CVE References

CVE-2019-13285