← Back

CVE-2021-36322

nvd nist
Published: Nov 20, 2021Modified: Jun 17, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

Dell Networking X-Series firmware versions prior to 3.0.1.8 contain a host header injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary host header values to poison the web-cache or trigger redirections.

Affected (9)

9 products
X1008p Firmware
X1018p Firmware
X1026p Firmware
X1052p Firmware
X4012 Firmware
X1008 Firmware
X1018 Firmware
X1026 Firmware
X1052 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X1008p
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X1018p
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X1026p
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X1052p
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X4012
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X1008
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X1018
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X1026
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0.1.8
Running on/withPlatform Versions
Dell
X1052
All versions

Timeline

No history available yet.