Description
A Host Header Injection issue on the Login page of Plesk Obsidian through 18.0.49 allows attackers to redirect users to malicious websites via a Host request header.
Remediation
References
Related Vulnerabilities
MySQL CVE-2019-2620 Vulnerability (CVE-2019-2620)
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-17531)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9855)
phpMyFAQ Cleartext Transmission of Sensitive Information Vulnerability (CVE-2022-4409)