VYPR

CWE-918

Server-Side Request Forgery (SSRF)

BaseIncomplete

Description

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-664

CVEs mapped to this weakness (3,680)

page 22 of 184
  • CVE-2023-6974CriDec 20, 2023
    risk 0.57cvss 9.8epss 0.02

    A malicious user could use this issue to access internal HTTP(s) servers and in the worst case (ie: aws instance) it could be abuse to get a remote code execution on the victim machine.

  • CVE-2023-46502CriOct 30, 2023
    risk 0.57cvss 9.8epss 0.01

    An issue in openCRX v.5.2.2 allows a remote attacker to read internal files and execute server side request forgery attack via insecure DocumentBuilderFactory.

  • CVE-2023-5572CriOct 13, 2023
    risk 0.57cvss 9.8epss 0.01

    Server-Side Request Forgery (SSRF) in GitHub repository vriteio/vrite prior to 0.3.0.

  • CVE-2023-39110HigAug 1, 2023
    risk 0.57cvss 8.8epss 0.04

    rconfig v3.9.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the path parameter at /ajaxGetFileByPath.php. This vulnerability allows authenticated attackers to make arbitrary requests via injection of crafted URLs.

  • CVE-2023-39109HigAug 1, 2023
    risk 0.57cvss 8.8epss 0.03

    rconfig v3.9.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the path_a parameter in the doDiff Function of /classes/compareClass.php. This vulnerability allows authenticated attackers to make arbitrary requests via injection of crafted URLs.

  • CVE-2023-39108HigAug 1, 2023
    risk 0.57cvss 8.8epss 0.03

    rconfig v3.9.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the path_b parameter in the doDiff Function of /classes/compareClass.php. This vulnerability allows authenticated attackers to make arbitrary requests via injection of crafted URLs.

  • CVE-2023-31848HigMay 17, 2023
    risk 0.57cvss 8.8epss 0.01

    davinci 0.3.0-rc is vulnerable to Server-side request forgery (SSRF).

  • CVE-2023-27586CriMar 20, 2023
    risk 0.57cvss 9.9epss 0.01

    CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to version 2.7.0, Cairo can send requests to external hosts when processing SVG files. A malicious actor could send a specially crafted SVG file that allows them to perform a server-side request forgery or…

  • CVE-2021-33926HigFeb 17, 2023
    risk 0.57cvss 8.8epss 0.01

    An issue in Plone CMS v. 5.2.4, 5.2.3, 5.2.2, 5.2.1, 5.2.0, 5.1rc2, 5.1rc1, 5.1b4, 5.1b3, 5.1b2, 5.1a2, 5.1a1, 5.1.7, 5.1.6, 5.1.5, 5.1.4, 5.1.2, 5.1.1 5.1, 5.0rc3, 5.0rc2, 5.0rc1, 5.0.9, 5.0.8, 5.0.7, 5.0.6, 5.0.5, 5.0.4, 5.0.3, 5.0.2, 5.0.10, 5.0.1, 5.0, 4.3.9, 4.3.8, 4.3.7,…

  • CVE-2022-47872HigFeb 1, 2023
    risk 0.57cvss 8.8epss 0.01

    A Server-Side Request Forgery (SSRF) in maccms10 v2021.1000.2000 allows attackers to force the application to make arbitrary requests via a crafted payload injected into the Name parameter under the Interface address module.

  • CVE-2022-36451HigOct 25, 2022
    risk 0.57cvss 8.8epss 0.01

    A vulnerability in the MiCollab Client server component of Mitel MiCollab through 9.5.0.101 could allow an authenticated attacker to conduct a Server-Side Request Forgery (SSRF) attack due to insufficient restriction of URL parameters. A successful exploit could allow an…

  • CVE-2022-38931HigSep 20, 2022
    risk 0.57cvss 8.8epss 0.01

    A Server-Side Request Forgery (SSRF) in fetch_net_file_upload function of baijiacmsV4 v4.1.4 allows remote attackers to force the application to make arbitrary requests via injection of arbitrary URLs into the url parameter.

  • CVE-2022-36663CriSep 6, 2022
    risk 0.57cvss 9.8epss 0.03

    Gluu Oxauth before v4.4.1 allows attackers to execute blind SSRF (Server-Side Request Forgery) attacks via a crafted request_uri parameter.

  • CVE-2022-31776HigAug 1, 2022
    risk 0.57cvss 8.8epss 0.01

    IBM DataPower Gateway 10.0.2.0 through 10.0.4.0, 10.0.1.0 through 10.0.1.8, 10.5.0.0, and 2018.4.1.0 through 2018.4.1.21 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially…

  • CVE-2022-2216CriJun 27, 2022
    risk 0.57cvss 9.8epss 0.02

    Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url prior to 7.0.0.

  • CVE-2022-1239HigMay 2, 2022
    risk 0.57cvss 8.8epss 0.01

    The HubSpot WordPress plugin before 8.8.15 does not validate the proxy URL given to the proxy REST endpoint, which could allow users with the edit_posts capability (by default contributor and above) to perform SSRF attacks

  • CVE-2022-27311CriApr 25, 2022
    risk 0.57cvss 9.8epss 0.02

    Gibbon v3.4.4 and below allows attackers to execute a Server-Side Request Forgery (SSRF) via a crafted URL.

  • CVE-2022-27426HigApr 15, 2022
    risk 0.57cvss 8.8epss 0.01

    A Server-Side Request Forgery (SSRF) in Chamilo LMS v1.11.13 allows attackers to enumerate the internal network and execute arbitrary system commands via a crafted Phar file.

  • CVE-2022-27245HigMar 18, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in MISP before 2.4.156. app/Model/Server.php does not restrict generateServerSettings to the CLI. This could lead to SSRF.

  • CVE-2022-0767CriMar 7, 2022
    risk 0.57cvss 9.9epss 0.01

    Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.17.