logo

Database

Description

The server processes requests with the Host header set and redirects clients to any destination.

Impact

- Enumerate the internal network via trial and error. - Perform a subset of Server Side Request Forgery attacks.

Recommendation

Configure server to prevent third party hosts redirection.

Threat

Unauthorized attacker from internet network.

Expected Remediation Time

⏱️ 10 minutes.