name:Misconfigured CDN Cache Poisoning via X-Amz-Server-Side-Encryption Header
author:0xcharan
severity:unknown
description:|
When the X-Amz-Server-Side-Encryption header is sent with user controlled value, it can lead to a misconfigured CDN cache response with a 400 status code, making the page inaccessible.
impact:|
This vulnerability can disrupt website availability by poisoning the CDN cache, potentially leading to denial of service for users trying to access the page.