Fallos del tipo CWE-644

55 resultados
CVE-2023-35894MEDIUMIBM Control Center HOST header injectionEPSS 0.2%CVE-2025-24339MEDIUMA vulnerability in the web application of ctrlX OS allows a remote unauthenticated attacker to conduct various attacks against users of the EPSS 0.2%CVE-2025-36227MEDIUMMultiple vulnerabilities in IBM Aspera FaspexEPSS 0.2%CVE-2026-1698MEDIUMHTTP Host header vulnerability in WebClient and WebScheduler web appsEPSS 0.2%CVE-2024-51454MEDIUMIBM Engineering Lifecycle Management - Engineering Workflow Management is impacted by vulnerabilities Host Header Injection observedEPSS 0.2%CVE-2025-66485MEDIUMMultiple vulnerabilities have been addressed in IBM Aspera SharesEPSS 0.2%CVE-2022-43847MEDIUMIBM Aspera Console HTTP header injectionEPSS 0.2%CVE-2025-67724MEDIUMTornado vulnerable to Header Injection and XSS via reason argumentEPSS 0.2%CVE-2025-40631LOWHTTP host header injection vulnerability in IceWarp Mail ServerEPSS 0.2%CVE-2024-40686MEDIUMIBM SmartCloud Analytics - Log Analysis HOST header injectionEPSS 0.2%CVE-2025-52647MEDIUMHCL BigFix WebUI is affected by a host header poisoning vulnerabilityEPSS 0.2%CVE-2025-27901MEDIUMMultiple vulnerabilities in IBM Java SDK affecting Db2 Recovery Expert for Linux, Unix and WindowsEPSS 0.2%CVE-2025-13213MEDIUMMultiple vulnerabilities in IBM Aspera OrchestratorEPSS 0.2%CVE-2026-4096MEDIUMA vulnerability has been identified in IBM DevOps Plan that allows a Host Header Injection attack due to improper handling of the Host header in HTTP requests.EPSS 0.1%CVE-2025-36223MEDIUMIBM OpenPages Host Header InjectionEPSS 0.1%