Description
A Host Header Injection vulnerability in qdPM 9.1 may allow an attacker to spoof a particular header and redirect users to malicious websites.
Remediation
References
Related Vulnerabilities
WordPress Plugin Teamleader CRM Forms Cross-Site Scripting (2.0.0)
MySQL CVE-2012-1689 Vulnerability (CVE-2012-1689)
MediaWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-35626)
MediaWiki Improper Authentication Vulnerability (CVE-2021-36128)
Opencart Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-47444)