Логотип exploitDog
bind:CVE-2023-7037
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-7037

Количество 2

Количество 2

nvd логотип

CVE-2023-7037

около 2 лет назад

A vulnerability was found in automad up to 1.10.9. It has been declared as critical. This vulnerability affects the function import of the file FileController.php. The manipulation of the argument importUrl leads to server-side request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-248686 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-q5q3-qm26-9jwm

около 2 лет назад

Authenticated Blind SSRF in automad/automad

CVSS3: 3.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-7037

A vulnerability was found in automad up to 1.10.9. It has been declared as critical. This vulnerability affects the function import of the file FileController.php. The manipulation of the argument importUrl leads to server-side request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-248686 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-q5q3-qm26-9jwm

Authenticated Blind SSRF in automad/automad

CVSS3: 3.7
0%
Низкий
около 2 лет назад

Уязвимостей на страницу