CVE-2021-36322
Dell Networking X-Series firmware versions prior to 3.0.1.8 contain a host header injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary host header values to poison the web-cache or trigger redirections.
Published:Nov 20, 2021
Last Modified:Nov 21, 2024
EPS:Nov 20, 2021
EPSS Score:0.00673
CVSS Score:6.1
Affected Products
Vendor
Product
Action
Vendor
Dell
Product
X1008
Dell
X1008
Vendor
Dell
Product
X1008 Firmware
Dell
X1008 Firmware
Vendor
Dell
Product
X1008p
Dell
X1008p
Vendor
Dell
Product
X1008p Firmware
Dell
X1008p Firmware
Vendor
Dell
Product
X1018
Dell
X1018
Vendor
Dell
Product
X1018 Firmware
Dell
X1018 Firmware
Vendor
Dell
Product
X1018p
Dell
X1018p
Vendor
Dell
Product
X1018p Firmware
Dell
X1018p Firmware
Vendor
Dell
Product
X1026
Dell
X1026
Vendor
Dell
Product
X1026 Firmware
Dell
X1026 Firmware
Vendor
Dell
Product
X1026p
Dell
X1026p
Vendor
Dell
Product
X1026p Firmware
Dell
X1026p Firmware
Vendor
Dell
Product
X1052
Dell
X1052
Vendor
Dell
Product
X1052 Firmware
Dell
X1052 Firmware
Vendor
Dell
Product
X1052p
Dell
X1052p
Vendor
Dell
Product
X1052p Firmware
Dell
X1052p Firmware
Vendor
Dell
Product
X4012
Dell
X4012
Vendor
Dell
Product
X4012 Firmware
Dell
X4012 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
