Vulnerabilities > Craftycontrol

DATE CVE VULNERABILITY TITLE RISK
2024-02-03 CVE-2024-1064 Improper Encoding or Escaping of Output vulnerability in Craftycontrol Crafty Controller
A host header injection vulnerability in the HTTP handler component of Crafty Controller allows a remote, unauthenticated attacker to trigger a Denial of Service (DoS) condition via a modified host header
network
low complexity
craftycontrol CWE-116
7.5