cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are affected by a origin bypass via the host header in an HTTP request. This vulnerability can be triggered by an HTTP endpoint exposed to the network.
The product does not properly verify that the source of data or communication is valid.
Link | Tags |
---|---|
https://www.cashit.at/ | product |
https://doi.org/10.35011/ww2q-d522 | technical description |