Vulnerabilities
Vulnerable Software
Exponentcms:  >> Exponentcms  Security Vulnerabilities
A HTTP Host header attack exists in ExponentCMS 2.6 and below in /exponent_constants.php. A modified HTTP header can change links on the webpage to an arbitrary value, leading to a possible attack vector for MITM.
CVSS Score
4.3
EPSS Score
0.129
Published
2021-08-16


Contact Us

Shodan ® - All rights reserved