IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 296003.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2024-07-15T01:28:53.462Z
Updated: 2024-08-02T04:26:16.013Z
Reserved: 2024-06-28T09:34:35.182Z
Link: CVE-2024-39736
Vulnrichment
Updated: 2024-08-02T04:26:16.013Z
NVD
Status : Analyzed
Published: 2024-07-15T02:15:05.947
Modified: 2024-07-16T14:02:29.583
Link: CVE-2024-39736
Redhat
No data.