Looking for the vulnerability index of Invicti's legacy products?
IBM RTC Improper Neutralization of HTTP Headers for Scripting Syntax Vulnerability - CVE-2024-51454 - Vulnerability Database

IBM RTC Improper Neutralization of HTTP Headers for Scripting Syntax Vulnerability - CVE-2024-51454

Medium
Reference: CVE-2024-51454
Title: IBM RTC Improper Neutralization of HTTP Headers for Scripting Syntax Vulnerability
Overview:

IBM Engineering Workflow Management 7.0.2 through 7.0.2 Interim Fix 035 7.0.3 through 7.0.3 Interim Fix 017 and 7.1 through 7.1 Interim Fix 004 is vulnerable to HTTP header injection caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system including cross-site scripting cache poisoning or session hijacking.