Описание
AdRem NetCrunch 10.6.0.4587 has a Server-Side Request Forgery (SSRF) vulnerability in the NetCrunch server. Every user can trick the server into performing SMB requests to other systems.
Ссылки
- ExploitThird Party Advisory
- Vendor Advisory
- ExploitThird Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:adremsoft:netcrunch:10.6.0.4587:*:*:*:*:*:*:*
EPSS
Процентиль: 45%
0.00223
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-918
Связанные уязвимости
github
больше 3 лет назад
AdRem NetCrunch 10.6.0.4587 has a Server-Side Request Forgery (SSRF) vulnerability in the NetCrunch server. Every user can trick the server into performing SMB requests to other systems.
EPSS
Процентиль: 45%
0.00223
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-918