CVE-2022-23079

In motor-admin versions 0.0.1 through 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:getmotoradmin:motor_admin:*:*:*:*:*:*:*:*

Information

Published : 2022-06-22 06:15

Updated : 2022-06-29 08:50


NVD link : CVE-2022-23079

Mitre link : CVE-2022-23079


JSON object : View

CWE
CWE-116

Improper Encoding or Escaping of Output

Advertisement

dedicated server usa

Products Affected

getmotoradmin

  • motor_admin