Unrated severityNVD Advisory· Published Aug 9, 2021· Updated Aug 4, 2024
CVE-2021-38290
CVE-2021-38290
Description
A host header attack vulnerability exists in FUEL CMS 1.5.0 through fuel/modules/fuel/config/fuel_constants.php and fuel/modules/fuel/libraries/Asset.php. An attacker can use a man in the middle attack such as phishing.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- FUEL CMS/FUEL CMSdescription
- Range: =1.5.0
Patches
Vulnerability mechanics
References
2- github.com/daylightstudio/FUEL-CMS/commit/8a0d88ad6869623c90e24b3b2ea33352049d39a7mitrex_refsource_MISC
- github.com/daylightstudio/FUEL-CMS/issues/580mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.