VYPR
Critical severity9.8NVD Advisory· Published Sep 9, 2022· Updated Jun 17, 2026

CVE-2022-40305

CVE-2022-40305

Description

A Server-Side Request Forgery issue in Canto Cumulus through 11.1.3 allows attackers to enumerate the internal network, overload network resources, and possibly have unspecified other impact via the server parameter to the /cwc/login login form.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Canto/Canto2 versions
    cpe:2.3:a:canto:canto:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:canto:canto:*:*:*:*:*:*:*:*range: <=11.1.3
    • (no CPE)range: <=11.1.3
  • Canto/Cumulusdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.