← Back

CVE-2020-12855

nvd nist
Published: Aug 26, 2020Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

A Host header injection vulnerability has been discovered in SecZetta NEProfile 3.3.11. Authenticated remote adversaries can poison this header resulting in an adversary controlling the execution flow for the 302 HTTP status.

Affected (1)

Products: Seczetta: Neprofile
1 product
Neprofile
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.3.11

References (2)

Timeline

No history available yet.