Security Advisory

CVE-2025-13803

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-01 02:32:05
Last updated 2025-12-01 17:18:15
Assigner VulDB
State PUBLISHED

Description

A vulnerability was identified in MediaCrush 1.0.0/1.0.1. The affected element is an unknown function of the file /mediacrush/paths.py of the component Header Handler. Such manipulation of the argument Host leads to improper neutralization of http headers for scripting syntax. The attack can be launched remotely.