VYPR
Unrated severityNVD Advisory· Published Oct 18, 2022· Updated May 9, 2025

Changing Information Technology Inc. RAVA certificate validation system - Server-Side Request Forgery (SSRF)

CVE-2022-39055

Description

RAVA certificate validation system has inadequate filtering for URL parameter. An unauthenticated remote attacker can perform SSRF attack to discover internal network topology base on query response.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.