cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are affected by a origin bypass via the host header in an HTTP request. This vulnerability can be triggered by an HTTP endpoint exposed to the network.
References
Link Resource
https://doi.org/10.35011/ww2q-d522 Technical Description
https://www.cashit.at/ Product
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: CyberDanube

Published: 2023-10-03T08:10:48.186Z

Updated: 2023-11-02T09:02:57.666Z

Reserved: 2023-07-13T07:01:28.747Z


Link: CVE-2023-3654

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-10-03T09:15:10.247

Modified: 2023-12-28T15:20:38.820


Link: CVE-2023-3654

JSON object: View

cve-icon Redhat Information

No data.

CWE