CVE-2025-27632
Severity CVSS v4.0:
Pending analysis
Type:
CWE-74
Injection
Publication date:
25/03/2025
Last modified:
27/03/2025
Description
A Host Header Injection vulnerability in TRMTracker application may allow an attacker by modifying the host header value in an HTTP request to leverage multiple attack vectors, including defacing the site content through web-cache poisoning.
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM