cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are affected by a origin bypass via the host header in an HTTP request. This vulnerability can be triggered by an HTTP endpoint exposed to the network.
References
| Link | Resource |
|---|---|
| https://www.cashit.at/ | Product |
| https://doi.org/10.35011/ww2q-d522 | Technical Description |
Configurations
History
28 Dec 2023, 15:20
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) https://doi.org/10.35011/ww2q-d522 - Technical Description |
02 Nov 2023, 10:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-10-03 09:15
Updated : 2023-12-28 15:20
NVD link : CVE-2023-3654
Mitre link : CVE-2023-3654
JSON object : View
Products Affected
cashit
- cashit\!
CWE
CWE-346
Origin Validation Error
