IBM Engineering Lifecycle Optimization 7.0.2 and 7.0.3 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 268754.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Jun 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-644 | |
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: ibm
Published: 2024-02-09T00:32:06.397Z
Updated: 2025-06-03T18:55:51.072Z
Reserved: 2023-10-05T01:39:10.397Z
Link: CVE-2023-45190

Updated: 2024-08-02T20:14:19.805Z

Status : Modified
Published: 2024-02-09T01:15:08.707
Modified: 2025-06-03T19:15:33.533
Link: CVE-2023-45190

No data.