VYPR

CWE-918

Server-Side Request Forgery (SSRF)

BaseIncomplete

Description

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-664

CVEs mapped to this weakness (3,632)

page 17 of 182
  • CVE-2023-27162CriMar 31, 2023
    risk 0.59cvss 9.1epss 0.01

    openapi-generator up to v6.4.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/gen/clients/{language}. This vulnerability allows attackers to access network resources and sensitive information via a crafted API request.

  • CVE-2022-45926HigJan 18, 2023
    risk 0.59cvss 8.8epss 0.17

    An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The endpoint notify.localizeEmailTemplate allows a low-privilege user to evaluate webreports.

  • CVE-2022-40842CriNov 22, 2022
    risk 0.59cvss 9.1epss 0.01

    ndk design NdkAdvancedCustomizationFields 3.5.0 is vulnerable to Server-side request forgery (SSRF) via rotateimg.php.

  • CVE-2022-41477CriOct 14, 2022
    risk 0.59cvss 9.1epss 0.01

    A security issue was discovered in WeBid <=1.2.2. A Server-Side Request Forgery (SSRF) vulnerability in the admin/theme.php file allows remote attackers to inject payloads via theme parameters to read files across directories.

  • CVE-2022-25801CriJul 14, 2022
    risk 0.59cvss 9.1epss 0.01

    Best Practical RT for Incident Response (RTIR) before 4.0.3 and 5.x before 5.0.3 allows SSRF via Scripted Action tools.

  • CVE-2022-25800CriJul 14, 2022
    risk 0.59cvss 9.1epss 0.01

    Best Practical RT for Incident Response (RTIR) before 4.0.3 and 5.x before 5.0.3 allows SSRF via the whois lookup tool.

  • CVE-2021-40604CriJun 13, 2022
    risk 0.59cvss 9.1epss 0.01

    A Server-Side Request Forgery (SSRF) vulnerability in IPS Community Suite before 4.6.2 allows remote authenticated users to request arbitrary URLs or trigger deserialization via phar protocol when generating class names dynamically. In some cases an exploitation is possible by…

  • CVE-2022-31393CriJun 9, 2022
    risk 0.59cvss 9.1epss 0.01

    Jizhicms v2.2.5 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability via the Index function in app/admin/c/PluginsController.php.

  • CVE-2022-31390CriJun 9, 2022
    risk 0.59cvss 9.1epss 0.01

    Jizhicms v2.2.5 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability via the Update function in app/admin/c/TemplateController.php.

  • CVE-2022-31386CriJun 9, 2022
    risk 0.59cvss 9.1epss 0.01

    A Server-Side Request Forgery (SSRF) in the getFileBinary function of nbnbk cms 3 allows attackers to force the application to make arbitrary requests via injection of arbitrary URLs into the URL parameter.

  • CVE-2022-25260CriFeb 25, 2022
    risk 0.59cvss 9.1epss 0.02

    JetBrains Hub before 2021.1.14276 was vulnerable to blind Server-Side Request Forgery (SSRF).

  • CVE-2022-0671CriFeb 18, 2022
    risk 0.59cvss 9.1epss 0.01

    A flaw was found in vscode-xml in versions prior to 0.19.0. Schema download could lead to blind SSRF or DoS via a large file.

  • CVE-2021-42091CriOct 7, 2021
    risk 0.59cvss 9.1epss 0.01

    An issue was discovered in Zammad before 4.1.1. SSRF can occur via GitHub or GitLab integration.

  • CVE-2020-21653CriOct 6, 2021
    risk 0.59cvss 9.1epss 0.01

    Myucms v2.2.1 contains a server-side request forgery (SSRF) in the component \controller\index.php, which can be exploited via the sj() method.

  • CVE-2021-29102CriJul 11, 2021
    risk 0.59cvss 9.1epss 0.02

    A Server-Side Request Forgery (SSRF) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote, unauthenticated attacker to forge GET requests to arbitrary URLs from the system, potentially leading to network enumeration or facilitating other attacks.

  • CVE-2020-24147CriJul 7, 2021
    risk 0.59cvss 9.1epss 0.02

    Server-side request forgery (SSR) vulnerability in the WP Smart Import (wp-smart-import) plugin 1.0.0 for WordPress via the file field.

  • CVE-2021-26715CriMar 25, 2021
    risk 0.59cvss 9.1epss 0.01

    The OpenID Connect server implementation for MITREid Connect through 1.3.3 contains a Server Side Request Forgery (SSRF) vulnerability. The vulnerability arises due to unsafe usage of the logo_uri parameter in the Dynamic Client Registration request. An unauthenticated attacker…

  • CVE-2019-18394CriOct 24, 2019
    risk 0.59cvss 9.8epss 0.32

    A Server Side Request Forgery (SSRF) vulnerability in FaviconServlet.java in Ignite Realtime Openfire through 4.4.2 allows attackers to send arbitrary HTTP GET requests.

  • CVE-2019-6837CriSep 17, 2019
    risk 0.59cvss 9.1epss 0.01

    A Server-Side Request Forgery (SSRF): CWE-918 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touch 10, MEG6260-0415 - U.motion KNX Server Plus, Touch 15), which could…

  • CVE-2019-0227HigMay 1, 2019
    risk 0.59cvss 7.5epss 0.92

    A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last released in 2006. Security and bug commits commits continue in the projects Axis 1.x Subversion repository, legacy users are encouraged to build from source. The successor…