HackTips.

页面数据均来自于CVE官方,仅调用Api进行查询

1@1042.net

CVE编号CVE-2025-27913
发布日期2025-03-10T00:00:00.000Z
更新日期2025-03-11T02:52:25.597Z
状态PUBLISHED
受影响的供应商Passbolt
受影响的产品API
描述Passbolt API before 5, if the server is misconfigured (with an incorrect installation process and disregarding of Health Check results), can send email messages with a domain name taken from an attacker-controlled HTTP Host header.

参考链接:

Image Additional Image