Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 05 Mar 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:jung-group:smart_visu_server_firmware:1.1.1050:*:*:*:*:*:*:* |
Fri, 20 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jung-group
Jung-group smart Visu Server Jung-group smart Visu Server Firmware |
|
| CPEs | cpe:2.3:h:jung-group:smart_visu_server:-:*:*:*:*:*:*:* cpe:2.3:o:jung-group:smart_visu_server_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Jung-group
Jung-group smart Visu Server Jung-group smart Visu Server Firmware |
Thu, 12 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 12 Feb 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Albrecht Jung
Albrecht Jung jung Smart Visu Server |
|
| Vendors & Products |
Albrecht Jung
Albrecht Jung jung Smart Visu Server |
Thu, 12 Feb 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | JUNG Smart Visu Server 1.1.1050 contains a request header manipulation vulnerability that allows unauthenticated attackers to override request URLs by injecting arbitrary values in the X-Forwarded-Host header. Attackers can manipulate proxied requests to generate tainted responses, enabling cache poisoning, potential phishing, and redirecting users to malicious domains. | |
| Title | JUNG Smart Visu Server - Improper Neutralization of HTTP Headers for Scripting Syntax | |
| Weaknesses | CWE-644 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-05T01:31:03.341Z
Reserved: 2026-02-12T01:23:58.228Z
Link: CVE-2026-26234
Updated: 2026-02-12T15:31:16.954Z
Status : Analyzed
Published: 2026-02-12T04:15:47.600
Modified: 2026-02-20T15:14:52.610
Link: CVE-2026-26234
No data.
OpenCVE Enrichment
Updated: 2026-04-16T17:15:17Z