Логотип exploitDog
bind:CVE-2016-7964
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-7964

Количество 4

Количество 4

ubuntu логотип

CVE-2016-7964

больше 9 лет назад

The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media file fetching is enabled, has no way to restrict access to private networks. This allows users to scan ports of internal networks via SSRF, such as 10.0.0.1/8, 172.16.0.0/12, and 192.168.0.0/16.

CVSS3: 8.6
EPSS: Низкий
nvd логотип

CVE-2016-7964

больше 9 лет назад

The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media file fetching is enabled, has no way to restrict access to private networks. This allows users to scan ports of internal networks via SSRF, such as 10.0.0.1/8, 172.16.0.0/12, and 192.168.0.0/16.

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2016-7964

больше 9 лет назад

The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php ...

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-943p-qf6q-5m99

больше 3 лет назад

The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media file fetching is enabled, has no way to restrict access to private networks. This allows users to scan ports of internal networks via SSRF, such as 10.0.0.1/8, 172.16.0.0/12, and 192.168.0.0/16.

CVSS3: 8.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-7964

The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media file fetching is enabled, has no way to restrict access to private networks. This allows users to scan ports of internal networks via SSRF, such as 10.0.0.1/8, 172.16.0.0/12, and 192.168.0.0/16.

CVSS3: 8.6
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-7964

The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media file fetching is enabled, has no way to restrict access to private networks. This allows users to scan ports of internal networks via SSRF, such as 10.0.0.1/8, 172.16.0.0/12, and 192.168.0.0/16.

CVSS3: 8.6
0%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-7964

The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php ...

CVSS3: 8.6
0%
Низкий
больше 9 лет назад
github логотип
GHSA-943p-qf6q-5m99

The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media file fetching is enabled, has no way to restrict access to private networks. This allows users to scan ports of internal networks via SSRF, such as 10.0.0.1/8, 172.16.0.0/12, and 192.168.0.0/16.

CVSS3: 8.6
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу