Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jjfr-pq2x-mf69

Опубликовано: 23 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central could allow an attacker to interact with internal or local services directly.

Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central could allow an attacker to interact with internal or local services directly.

Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

EPSS

Процентиль: 42%
0.00203
Низкий

7.1 High

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 7.1
nvd
около 2 лет назад

A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central could allow an attacker to interact with internal or local services directly. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVSS3: 9.1
fstec
около 2 лет назад

Уязвимость модуля modVulnerabilityProtect средства мониторинга и управления безопасностью Trend Micro Apex Central, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 42%
0.00203
Низкий

7.1 High

CVSS3

Дефекты

CWE-918