Low severity3.1NVD Advisory· Published Jun 22, 2023· Updated Jun 17, 2026
CVE-2023-28016
CVE-2023-28016
Description
Host Header Injection vulnerability in the HCL BigFix OSD Bare Metal Server version 311.12 or lower allows attacker to supply invalid input to cause the OSD Bare Metal Server to perform a redirect to an attacker-controlled domain.
Affected products
3- cpe:2.3:a:hcltech:bigfix_osd_bare_metal_server:*:*:*:*:*:*:*:*Range: <=311.12
- Range: <=311.12
- Range: < 311.12
Patches
Vulnerability mechanics
References
1- support.hcltechsw.com/csmnvdVendor Advisory
News mentions
0No linked articles in our index yet.