Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g336-gpg3-r725

Опубликовано: 25 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.9

Описание

A Server-Side Request Forgery vulnerability in the APROL Web Portal used in B&R APROL <4.4-00P5 may allow an unauthenticated network-based attacker to force the web server to request arbitrary URLs.

A Server-Side Request Forgery vulnerability in the APROL Web Portal used in B&R APROL <4.4-00P5 may allow an unauthenticated network-based attacker to force the web server to request arbitrary URLs.

EPSS

Процентиль: 55%
0.00323
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-918

Связанные уязвимости

nvd
11 месяцев назад

A Server-Side Request Forgery vulnerability in the APROL Web Portal used in B&R APROL <4.4-00P5 may allow an unauthenticated network-based attacker to force the web server to request arbitrary URLs.

EPSS

Процентиль: 55%
0.00323
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-918