Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-16248

Опубликовано: 09 авг. 2020
Источник: nvd
CVSS3: 5.8
CVSS2: 5
EPSS Низкий

Описание

Prometheus Blackbox Exporter through 0.17.0 allows /probe?target= SSRF. NOTE: follow-on discussion suggests that this might plausibly be interpreted as both intended functionality and also a vulnerability

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:prometheus:blackbox_exporter:*:*:*:*:*:*:*:*
Версия до 0.17.0 (включая)

EPSS

Процентиль: 62%
0.00422
Низкий

5.8 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 5.8
ubuntu
больше 5 лет назад

Prometheus Blackbox Exporter through 0.17.0 allows /probe?target= SSRF. NOTE: follow-on discussion suggests that this might plausibly be interpreted as both intended functionality and also a vulnerability

CVSS3: 5.8
debian
больше 5 лет назад

Prometheus Blackbox Exporter through 0.17.0 allows /probe?target= SSRF ...

CVSS3: 5.8
github
больше 3 лет назад

** DISPUTED ** Prometheus Blackbox Exporter through 0.17.0 allows /probe?target= SSRF. NOTE: follow-on discussion suggests that this might plausibly be interpreted as both intended functionality and also a vulnerability.

EPSS

Процентиль: 62%
0.00422
Низкий

5.8 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-918