Описание
Server Side Request Forgery (SSRF) vulnerability in AdmirorFrames Joomla! extension in afGdStream.php script allows to access local files or server pages available only from localhost. This issue affects AdmirorFrames: before 5.0.
Ссылки
- Third Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- Issue Tracking
- Third Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- Issue Tracking
Уязвимые конфигурации
Конфигурация 1Версия до 5.0 (исключая)
cpe:2.3:a:admiror-design-studio:admirorframes:*:*:*:*:*:joomla\!:*:*
EPSS
Процентиль: 96%
0.28818
Средний
7.5 High
CVSS3
Дефекты
CWE-918
CWE-918
EPSS
Процентиль: 96%
0.28818
Средний
7.5 High
CVSS3
Дефекты
CWE-918
CWE-918