Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vpj2-mh86-xpmv

Опубликовано: 14 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.2

Описание

In WhatsUp Gold versions released before 2023.1.2 ,

a blind SSRF vulnerability exists in Whatsup Gold's FaviconController that allows an attacker to send arbitrary HTTP requests on behalf of the vulnerable server.

In WhatsUp Gold versions released before 2023.1.2 ,

a blind SSRF vulnerability exists in Whatsup Gold's FaviconController that allows an attacker to send arbitrary HTTP requests on behalf of the vulnerable server.

EPSS

Процентиль: 58%
0.00368
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 4.2
nvd
больше 1 года назад

In WhatsUp Gold versions released before 2023.1.2 , a blind SSRF vulnerability exists in Whatsup Gold's FaviconController that allows an attacker to send arbitrary HTTP requests on behalf of the vulnerable server.

EPSS

Процентиль: 58%
0.00368
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-918