VYPR

CWE-918

Server-Side Request Forgery (SSRF)

BaseIncomplete

Description

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-664

CVEs mapped to this weakness (3,621)

page 48 of 182
  • CVE-2023-24243HigJun 16, 2023
    risk 0.49cvss 7.5epss 0.04

    CData RSB Connect v22.0.8336 was discovered to contain a Server-Side Request Forgery (SSRF).

  • CVE-2023-26735HigApr 26, 2023
    risk 0.49cvss 7.5epss 0.01

    blackbox_exporter v0.23.0 was discovered to contain an access control issue in its probe interface. This vulnerability allows attackers to detect intranet ports and services, as well as download resources. NOTE: this is disputed by third parties because authentication can be…

  • CVE-2023-2140HigApr 21, 2023
    risk 0.49cvss 7.5epss 0.01

    A Server-Side Request Forgery vulnerability in DELMIA Apriso Release 2017 through Release 2022 could allow an unauthenticated attacker to issue requests to arbitrary hosts on behalf of the server running the DELMIA Apriso application.

  • CVE-2023-25262HigMar 28, 2023
    risk 0.49cvss 7.5epss 0.01

    Stimulsoft GmbH Stimulsoft Designer (Web) 2023.1.3 is vulnerable to Server Side Request Forgery (SSRF). TThe Reporting Designer (Web) offers the possibility to embed sources from external locations. If the user chooses an external location, the request to that resource is…

  • CVE-2023-27161HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.01

    Jellyfin up to v10.7.7 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /Repositories. This vulnerability allows attackers to access network resources and sensitive information via a crafted POST request.

  • CVE-2021-36396HigMar 6, 2023
    risk 0.49cvss 7.5epss 0.01

    In Moodle, insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions, resulting in a blind SSRF risk.

  • CVE-2023-25557HigFeb 11, 2023
    risk 0.49cvss 7.5epss 0.01

    DataHub is an open-source metadata platform. The DataHub frontend acts as a proxy able to forward any REST or GraphQL requests to the backend. The goal of this proxy is to perform authentication if needed and forward HTTP requests to the DataHub Metadata Store (GMS). It has been…

  • CVE-2023-21761HigJan 10, 2023
    risk 0.49cvss 7.5epss 0.02

    Microsoft Exchange Server Information Disclosure Vulnerability

  • CVE-2022-38212HigDec 29, 2022
    risk 0.49cvss 7.5epss 0.01

    Protections against potential Server-Side Request Forgery (SSRF) vulnerabilities in Esri Portal for ArcGIS versions 10.8.1 and below were not fully honored and may allow a remote, unauthenticated attacker to forge requests to arbitrary URLs from the system, potentially leading…

  • CVE-2022-38211HigDec 29, 2022
    risk 0.49cvss 7.5epss 0.01

    Protections against potential Server-Side Request Forgery (SSRF) vulnerabilities in Esri Portal for ArcGIS versions 10.9.1 and below were not fully honored and may allow a remote, unauthenticated attacker to forge requests to arbitrary URLs from the system, potentially leading…

  • CVE-2022-38203HigDec 29, 2022
    risk 0.49cvss 7.5epss 0.01

    Protections against potential Server-Side Request Forgery (SSRF) vulnerabilities in Esri Portal for ArcGIS versions 10.8.1 and below were not fully honored and may allow a remote, unauthenticated attacker to forge requests to arbitrary URLs from the system, potentially leading…

  • CVE-2022-45429HigDec 27, 2022
    risk 0.49cvss 7.5epss 0.01

    Some Dahua software products have a vulnerability of server-side request forgery (SSRF). An Attacker can access internal resources by concatenating links (URL) that conform to specific rules.

  • CVE-2022-43140HigNov 17, 2022
    risk 0.49cvss 7.5epss 0.02

    kkFileView v4.1.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component cn.keking.web.controller.OnlinePreviewController#getCorsFile. This vulnerability allows attackers to force the application to make arbitrary requests via injection of crafted URLs…

  • CVE-2022-42894HigNov 17, 2022
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). An unauthenticated Server-Side Request Forgery (SSRF) vulnerability was identified in one of the web services exposed on the syngo Dynamics application that could allow for the leaking of NTLM…

  • CVE-2022-39241HigNov 2, 2022
    risk 0.49cvss 7.6epss 0.01

    Discourse is a platform for community discussion. A malicious admin could use this vulnerability to perform port enumeration on the local host or other hosts on the internal network, as well as against hosts on the Internet. Latest `stable`, `beta`, and `test-passed` versions…

  • CVE-2022-40146HigSep 22, 2022
    risk 0.49cvss 7.5epss 0.07

    Server-Side Request Forgery (SSRF) vulnerability in Batik of Apache XML Graphics allows an attacker to access files using a Jar url. This issue affects Apache XML Graphics Batik 1.14.

  • CVE-2022-38187HigAug 15, 2022
    risk 0.49cvss 7.5epss 0.01

    Prior to version 10.9.0, the sharing/rest/content/features/analyze endpoint is always accessible to anonymous users, which could allow an unauthenticated attacker to induce Esri Portal for ArcGIS to read arbitrary URLs.

  • CVE-2020-23622HigAug 15, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue in the UPnP protocol in 4thline cling 2.0.0 through 2.1.2 allows remote attackers to cause a denial of service via an unchecked CALLBACK parameter in the request header

  • CVE-2022-37041HigAug 12, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in ProxyServlet.java in the /proxy servlet in Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0. The value of the X-Forwarded-Host header overwrites the value of the Host header in proxied requests. The value of X-Forwarded-Host header is not checked…

  • CVE-2022-22982HigJul 13, 2022
    risk 0.49cvss 7.5epss 0.01

    The vCenter Server contains a server-side request forgery (SSRF) vulnerability. A malicious actor with network access to 443 on the vCenter Server may exploit this issue by accessing a URL request outside of vCenter Server or accessing an internal service.