Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A Host header injection vulnerability has been discovered in SecZetta NEProfile 3.3.11. Authenticated remote adversaries can poison this header resulting in an adversary controlling the execution flow for the 302 HTTP status.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SecZetta NEProfile 注入漏洞
Vulnerability Description
SecZetta NEProfile 3.3.1版本存在安全漏洞,该漏洞源于经过身份验证的远程攻击者可以毒害此标头,从而导致攻击者控制302 HTTP状态的执行流。
CVSS Information
N/A
Vulnerability Type
N/A