CVE-2008-3494 EXPLOIT
7.8
HIGH · CVSS 2.0 · EPSS 2.8% (pctl 86)
Patch early
A public exploit exists.
Description
8e6 R3000 Internet Filter 2.0.12.10 allows remote attackers to bypass intended restrictions via an extra HTTP Host header with additional leading text placed before the real Host header.
Scoring
| CVSS | 7.8 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
| EPSS | 2.77% — more likely to be exploited than 86% of all CVEs |
| Weakness | CWE-264 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2008-08-06 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| 8e6 | r3000 internet filter |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | 8E6 Technologies R3000 - Host Header Internet Filter Security Bypass | 2008-08-05 |
References
- http://secunia.com/advisories/31391
- http://www.securityfocus.com/archive/1/495117/100/0/threaded
- http://www.securityfocus.com/bid/30541
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44238
- http://secunia.com/advisories/31391
- http://www.securityfocus.com/archive/1/495117/100/0/threaded
- http://www.securityfocus.com/bid/30541
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44238
→ the Explorer · watch your stack · NVD