High severity8.2NVD Advisory· Published Mar 3, 2017· Updated Jun 17, 2026
CVE-2015-8813
CVE-2015-8813
Description
The Page_Load function in Umbraco.Web/umbraco.presentation/umbraco/dashboard/FeedProxy.aspx.cs in Umbraco before 7.4.0 allows remote attackers to conduct server-side request forgery (SSRF) attacks via the url parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
Umbraco.CMSNuGet | < 7.4.0 | 7.4.0 |
Affected products
2Patches
Vulnerability mechanics
References
9- github.com/umbraco/Umbraco-CMS/commit/924a016ffe7ae7ea6d516c07a7852f0095eddbcenvdPatchVendor AdvisoryWEB
- www.openwall.com/lists/oss-security/2016/02/17/5nvdExploitMailing ListThird Party AdvisoryWEB
- www.openwall.com/lists/oss-security/2016/02/16/10nvdMailing ListThird Party AdvisoryWEB
- www.openwall.com/lists/oss-security/2016/02/17/1nvdMailing ListThird Party AdvisoryWEB
- www.openwall.com/lists/oss-security/2016/02/18/8nvdMailing ListThird Party AdvisoryWEB
- github.com/advisories/GHSA-x34j-wxq8-7vcmghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2015-8813ghsaADVISORY
- issues.umbraco.org/issue/U4-7457nvdIssue Tracking
- web.archive.org/web/20230608160721/https://issues.umbraco.org/issue/U4-7457ghsaWEB
News mentions
0No linked articles in our index yet.