Логотип exploitDog
bind:CVE-2020-10770
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-10770

Количество 4

Количество 4

redhat логотип

CVE-2020-10770

около 5 лет назад

A flaw was found in Keycloak before 13.0.0, where it is possible to force the server to call out an unverified URL using the OIDC parameter request_uri. This flaw allows an attacker to use this parameter to execute a Server-side request forgery (SSRF) attack.

CVSS3: 5.8
EPSS: Критический
nvd логотип

CVE-2020-10770

около 5 лет назад

A flaw was found in Keycloak before 13.0.0, where it is possible to force the server to call out an unverified URL using the OIDC parameter request_uri. This flaw allows an attacker to use this parameter to execute a Server-side request forgery (SSRF) attack.

CVSS3: 5.3
EPSS: Критический
debian логотип

CVE-2020-10770

около 5 лет назад

A flaw was found in Keycloak before 13.0.0, where it is possible to fo ...

CVSS3: 5.3
EPSS: Критический
github логотип

GHSA-jh7q-5mwf-qvhw

больше 3 лет назад

Keycloak vulnerable to Server-Side Request Forgery

CVSS3: 5.3
EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-10770

A flaw was found in Keycloak before 13.0.0, where it is possible to force the server to call out an unverified URL using the OIDC parameter request_uri. This flaw allows an attacker to use this parameter to execute a Server-side request forgery (SSRF) attack.

CVSS3: 5.8
92%
Критический
около 5 лет назад
nvd логотип
CVE-2020-10770

A flaw was found in Keycloak before 13.0.0, where it is possible to force the server to call out an unverified URL using the OIDC parameter request_uri. This flaw allows an attacker to use this parameter to execute a Server-side request forgery (SSRF) attack.

CVSS3: 5.3
92%
Критический
около 5 лет назад
debian логотип
CVE-2020-10770

A flaw was found in Keycloak before 13.0.0, where it is possible to fo ...

CVSS3: 5.3
92%
Критический
около 5 лет назад
github логотип
GHSA-jh7q-5mwf-qvhw

Keycloak vulnerable to Server-Side Request Forgery

CVSS3: 5.3
92%
Критический
больше 3 лет назад

Уязвимостей на страницу