CVE-2022-38796 Information

Description

A Host Header Injection vulnerability in Feehi CMS 2.1.1 may allow an attacker to spoof a particular header. This can be exploited by abusing password reset emails.

Reference

https://www.youtube.com/watch?v=k8dp0FJnSsI

Share on: