CNNVD-202506-3754 Information

CNNVD ID

CNNVD-202506-3754

CVE-2025-40710

  • CNNVD Published: 2025-06-30

Description (Chinese)

Intersections Hotspot Shield VPN是美国Intersections公司的一款虚拟专用网络(VPN)服务产品。 Intersections Hotspot Shield VPN 存在注入漏洞,该漏洞源于处理Host头时存在注入问题,可能导致请求重定向或流量转发到攻击者控制的服务器。

Description (English)

Intersections Hotspot Shield VPN is a virtual private network (VPN) service of Intersections in the United States. Intersections Hotspot Shield VPN had an injection loophole, which stemmed from injection problems in handling the head of Host, which could lead to requests for redirection or flow to the attacker-controlled server.

Hazard Level

High

Vulnerability Type

注入

Affected Vendor

Inteset Systems

Published

2025-06-30

Last Modified

2026-02-24

References

https://www.incibe.es/en/incibe-cert/notices/aviso/host-header-injection-hhi-hotspot-shield-vpn-client

Share on: