Description
A Host Header Injection vulnerability in qdPM 9.1 may allow an attacker to spoof a particular header and redirect users to malicious websites.
Remediation
References
Related Vulnerabilities
WordPress Plugin Wp-D3 Cross-Site Request Forgery (2.4)
WordPress Plugin classyfrieds Arbitrary File Upload (3.8)
Oracle Application Server Other Vulnerability (CVE-2006-5366)
MySQL CVE-2023-22112 Vulnerability (CVE-2023-22112)
WordPress Ultimate Member Plugin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-10673)