Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2019-16645
Description:An issue was discovered in Embedthis GoAhead 2.5.0. Certain pages (such as goform/login and config/log_off_page.htm) create links containing a hostname obtained from an arbitrary HTTP Host header sent by an attacker. This could potentially be used in a phishing attack.
Test IDs: 1.3.6.1.4.1.25623.1.0.114133  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2019-16645
http://packetstormsecurity.com/files/154652/GoAhead-2.5.0-Host-Header-Injection.html
https://github.com/Ramikan/Vulnerabilities/blob/master/GoAhead%20Web%20server%20HTTP%20Header%20Injection




© 1998-2025 E-Soft Inc. All rights reserved.