Описание
HCL Unica Centralized Offer Management is vulnerable to a potential Server-Side Request Forgery (SSRF). An attacker can exploit improper input validation by submitting maliciously crafted input to a target application running on a server.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 25.1.0.1 (исключая)
cpe:2.3:a:hcltech:unica_centralized_offer_management:*:*:*:*:*:*:*:*
EPSS
Процентиль: 16%
0.0005
Низкий
3.5 Low
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-918
Связанные уязвимости
CVSS3: 3.5
github
4 месяца назад
HCL Unica Centralized Offer Management is vulnerable to a potential Server-Side Request Forgery (SSRF). An attacker can exploit improper input validation by submitting maliciously crafted input to a target application running on a server.
EPSS
Процентиль: 16%
0.0005
Низкий
3.5 Low
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-918