High severity8.1NVD Advisory· Published Feb 26, 2024· Updated Jul 9, 2026
CVE-2024-22873
CVE-2024-22873
Description
Tencent Blueking CMDB v3.2.x to v3.9.x was discovered to contain a Server-Side Request Forgery (SSRF) via the event subscription function (/service/subscription.go). This vulnerability allows attackers to access internal requests via a crafted POST request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:tencent:blueking_configuration_management_database:*:*:*:*:*:*:*:*Range: >=3.2.2,<=3.9.47
- Tencent/Blueking CMDBdescription
- Range: v3.2.x to v3.9.x
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.