VYPR
Low severity3.1NVD Advisory· Published Jun 22, 2023· Updated Jun 17, 2026

CVE-2023-28016

CVE-2023-28016

Description

Host Header Injection vulnerability in the HCL BigFix OSD Bare Metal Server version 311.12 or lower allows attacker to supply invalid input to cause the OSD Bare Metal Server to perform a redirect to an attacker-controlled domain.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.