Description
A Host Header Injection issue on the Login page of Plesk Obsidian through 18.0.49 allows attackers to redirect users to malicious websites via a Host request header.
Remediation
References
Related Vulnerabilities
Liferay DXP Incorrect Default Permissions Vulnerability (CVE-2022-42130)
Oracle JRE CVE-2013-5788 Vulnerability (CVE-2013-5788)
WordPress Plugin Nextend Twitter Connect Cross-Site Scripting (1.5.0)
WordPress Plugin Ninja Announcements Lite 'ninja_annc.php' SQL Injection (1.2.3)
WordPress Plugin WPBakery Page Builder Clipboard Cross-Site Scripting (4.5.5)