openITCOCKPIT through 3.7.2 allows remote attackers to configure the self::DEVELOPMENT or self::STAGING option by placing a hostname containing "dev" or "staging" in the HTTP Host header.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-20T17:48:21

Updated: 2020-03-25T13:54:40

Reserved: 2020-03-20T00:00:00


Link: CVE-2020-10792

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-03-20T18:15:13.997

Modified: 2020-03-25T19:35:21.490


Link: CVE-2020-10792

JSON object: View

cve-icon Redhat Information

No data.

CWE