peter bassill · operator
$ cve CVE-2008-3494 JSON

CVE-2008-3494 EXPLOIT

7.8
HIGH · CVSS 2.0 · EPSS 2.8% (pctl 86)

Patch early

A public exploit exists.

Description

8e6 R3000 Internet Filter 2.0.12.10 allows remote attackers to bypass intended restrictions via an extra HTTP Host header with additional leading text placed before the real Host header.

Scoring

CVSS7.8 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
EPSS2.77% — more likely to be exploited than 86% of all CVEs
WeaknessCWE-264
On CISA KEVno
Public exploityes
Published2008-08-06
Last modified2026-06-16

Affected (1)

VendorProduct
8e6r3000 internet filter

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD