A vulnerability was found in Arcadia Technology Crafty Controller up to 4.2.2. It has been classified as problematic. Affected is an unknown function of the component HTTP Handler. The manipulation of the argument Host leads to improper neutralization of http headers for scripting syntax.
This vulnerability is traded as CVE-2024-1064. It is possible to launch the attack remotely. There is no exploit available.