CVE-2026-0396 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An attacker might be able to inject HTML content into the internal web dashboard by sending crafted DNS queries to a DNSdist instance where domain-based dynamic…
Low CVSS: 3.1

CVE-2026-0396

An attacker might be able to inject HTML content into the internal web dashboard by sending crafted DNS queries to a DNSdist instance where domain-based dynamic rules have been enabled via either DynBlockRulesGroup:setSuffixMatchRule or DynBlockRulesGroup:setSuffixMatchRuleFFI.
Vendor
-
Product
-
CWE
CWE-80
Yayın Tarihi
2026-03-31 12:16:27
Güncelleme
2026-04-01 14:24:02
Source Identifier
security@open-xchange.com
KEV Date Added
-

Kategoriler

Referanslar