qdPM Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2020-11814 - Vulnerability Database
qdPM Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2020-11814
Medium
Reference:
CVE-2020-11814
Title:
qdPM Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability
Overview:
A Host Header Injection vulnerability in qdPM 9.1 may allow an attacker to spoof a particular header and redirect users to malicious websites.