Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3pgm-m73m-qrj2

Опубликовано: 03 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

SSRF vulnerability in the RSS feed parser in Zimbra Collaboration 9.0.0 before Patch 43, 10.0.x before 10.0.12, and 10.1.x before 10.1.4 allows unauthorized redirection to internal network endpoints.

SSRF vulnerability in the RSS feed parser in Zimbra Collaboration 9.0.0 before Patch 43, 10.0.x before 10.0.12, and 10.1.x before 10.1.4 allows unauthorized redirection to internal network endpoints.

EPSS

Процентиль: 53%
0.00303
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 5.3
nvd
около 1 года назад

SSRF vulnerability in the RSS feed parser in Zimbra Collaboration 9.0.0 before Patch 43, 10.0.x before 10.0.12, and 10.1.x before 10.1.4 allows unauthorized redirection to internal network endpoints.

EPSS

Процентиль: 53%
0.00303
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-918