Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-51697

Опубликовано: 27 дек. 2023
Источник: nvd
CVSS3: 4.3
CVSS3: 7.5
EPSS Низкий

Описание

Audiobookshelf is a self-hosted audiobook and podcast server. Prior to 2.7.0, Audiobookshelf is vulnerable to unauthenticated blind server-side request (SSRF) vulnerability in podcastUtils.js. This vulnerability has been addressed in version 2.7.0. There are no known workarounds for this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:audiobookshelf:audiobookshelf:*:*:*:*:*:*:*:*
Версия до 2.7.0 (исключая)

EPSS

Процентиль: 17%
0.00056
Низкий

4.3 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-918

EPSS

Процентиль: 17%
0.00056
Низкий

4.3 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-918