Логотип exploitDog
bind:CVE-2021-40604
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-40604

Количество 2

Количество 2

nvd логотип

CVE-2021-40604

больше 3 лет назад

A Server-Side Request Forgery (SSRF) vulnerability in IPS Community Suite before 4.6.2 allows remote authenticated users to request arbitrary URLs or trigger deserialization via phar protocol when generating class names dynamically. In some cases an exploitation is possible by an unauthenticated user.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-cg2x-qc59-j254

больше 3 лет назад

A Server-Side Request Forgery (SSRF) vulnerability in IPS Community Suite before 4.6.2 allows remote authenticated users to request arbitrary URLs or trigger deserialization via phar protocol when generating class names dynamically. In some cases an exploitation is possible by an unauthenticated user.

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-40604

A Server-Side Request Forgery (SSRF) vulnerability in IPS Community Suite before 4.6.2 allows remote authenticated users to request arbitrary URLs or trigger deserialization via phar protocol when generating class names dynamically. In some cases an exploitation is possible by an unauthenticated user.

CVSS3: 9.1
1%
Низкий
больше 3 лет назад
github логотип
GHSA-cg2x-qc59-j254

A Server-Side Request Forgery (SSRF) vulnerability in IPS Community Suite before 4.6.2 allows remote authenticated users to request arbitrary URLs or trigger deserialization via phar protocol when generating class names dynamically. In some cases an exploitation is possible by an unauthenticated user.

CVSS3: 9.1
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу