CVE-2024-12973: Akinsoft Octocloud

Medium severity, CVSS 4.7. EPSS: 0.1% chance of exploitation in the next 30 days.

Origin Validation Error vulnerability in Akinsoft OctoCloud allows HTTP Response Splitting, CAPEC - 87 - Forceful Browsing. This issue affects OctoCloud: from s1.09.01 before v1.11.01.

Affected products

  • Akinsoft Octocloud: from s1.09.01, before v1.11.01 (fixed in v1.11.01)

Published 2025-09-02. Last modified 2026-06-17.