High severity8.1NVD Advisory· Published May 13, 2022· Updated Jun 17, 2026
CVE-2020-22983
CVE-2020-22983
Description
A Server-Side Request Forgery (SSRF) vulnerability exists in MicroStrategy Web SDK 11.1 and earlier, allows remote unauthenticated attackers to conduct a server-side request forgery (SSRF) attack via the srcURL parameter to the shortURL task.
Affected products
2- MicroStrategy/Web SDKdescription
- Range: <=11.1
Patches
Vulnerability mechanics
References
5- microstrategy.comnvdVendor Advisory
- tinyurl.comnvdThird Party Advisory
- www.microstrategy.com/us/report-a-security-vulnerabilitynvdVendor Advisory
- www.yourcompany.com:8080/MicroStrategy/servlet/taskProcnvdBroken Link
- medium.com/%40win3zz/how-i-made-31500-by-submitting-a-bug-to-facebook-d31bb046e204nvd
News mentions
0No linked articles in our index yet.