In motor-admin versions 0.0.1 up to and including 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
getmotoradmin motor admin |