VYPR

CWE-918

Server-Side Request Forgery (SSRF)

BaseIncomplete

Description

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-664

CVEs mapped to this weakness (3,621)

page 8 of 182
  • CVE-2022-40296CriOct 31, 2022
    risk 0.64cvss 9.8epss 0.01

    The application was vulnerable to a Server-Side Request Forgery attacks, allowing the backend server to interact with unexpected endpoints, potentially including internal and local services, leading to attacks in other downstream systems.

  • CVE-2022-42149CriOct 17, 2022
    risk 0.64cvss 9.8epss 0.02

    kkFileView 4.0 is vulnerable to Server-side request forgery (SSRF) via controller\OnlinePreviewController.java.

  • CVE-2022-41497CriOct 13, 2022
    risk 0.64cvss 9.8epss 0.01

    ClipperCMS 1.3.3 was discovered to contain a Server-Side Request Forgery (SSRF) via the pkg_url parameter at /manager/index.php.

  • CVE-2022-41496CriOct 13, 2022
    risk 0.64cvss 9.8epss 0.01

    iCMS v7.0.16 was discovered to contain a Server-Side Request Forgery (SSRF) via the url parameter at admincp.php.

  • CVE-2022-41495CriOct 13, 2022
    risk 0.64cvss 9.8epss 0.01

    ClipperCMS 1.3.3 was discovered to contain a Server-Side Request Forgery (SSRF) via the rss_url_news parameter at /manager/index.php.

  • CVE-2022-40357CriSep 20, 2022
    risk 0.64cvss 9.8epss 0.02

    A security issue was discovered in Z-BlogPHP <= 1.7.2. A Server-Side Request Forgery (SSRF) vulnerability in the zb_users/plugin/UEditor/php/action_crawler.php file allows remote attackers to force the application to make arbitrary requests via injection of arbitrary URLs into…

  • CVE-2022-38292CriSep 12, 2022
    risk 0.64cvss 9.8epss 0.01

    SLiMS Senayan Library Management System v9.4.2 was discovered to contain multiple Server-Side Request Forgeries via the components /bibliography/marcsru.php and /bibliography/z3950sru.php.

  • CVE-2022-40305CriSep 9, 2022
    risk 0.64cvss 9.8epss 0.02

    A Server-Side Request Forgery issue in Canto Cumulus through 11.1.3 allows attackers to enumerate the internal network, overload network resources, and possibly have unspecified other impact via the server parameter to the /cwc/login login form.

  • CVE-2022-32533CriJul 6, 2022
    risk 0.64cvss 9.8epss 0.04

    Apache Jetspeed-2 does not sufficiently filter untrusted user input by default leading to a number of issues including XSS, CSRF, XXE, and SSRF. Setting the configuration option "xss.filter.post = true" may mitigate these issues. NOTE: Apache Jetspeed is a dormant project of…

  • CVE-2022-28616CriMay 17, 2022
    risk 0.64cvss 9.8epss 0.01

    A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView.

  • CVE-2022-24449CriApr 28, 2022
    risk 0.64cvss 9.8epss 0.02

    Solar appScreener through 3.10.4, when a valid license is not present, allows XXE and SSRF attacks via a crafted XML document.

  • CVE-2022-29556CriApr 28, 2022
    risk 0.64cvss 9.8epss 0.01

    The iot-manager microservice 1.0.0 in Northern.tech Mender Enterprise before 3.2.2 allows SSRF because the Azure IoT Hub integration provides several SSRF primitives that can execute cross-tenant actions via internal API endpoints.

  • CVE-2022-27469CriApr 26, 2022
    risk 0.64cvss 9.8epss 0.01

    Monstaftp v2.10.3 was discovered to allow attackers to execute Server-Side Request Forgery (SSRF).

  • CVE-2022-27429CriApr 25, 2022
    risk 0.64cvss 9.8epss 0.01

    Jizhicms v1.9.5 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability via /admin.php/Plugins/update.html.

  • CVE-2021-20325CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red Hat Enterprise Linux 8.5.0, causes a security regression compared to the versions shipped in Red Hat Enterprise Linux 8.4. A user who installs or updates to Red Hat Enterprise Linux…

  • CVE-2022-24568CriFeb 10, 2022
    risk 0.64cvss 9.8epss 0.01

    Novel-plus v3.6.0 was discovered to be vulnerable to Server-Side Request Forgery (SSRF) via user-supplied crafted input.

  • CVE-2021-42637CriFeb 2, 2022
    risk 0.64cvss 9.8epss 0.02

    PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability.

  • CVE-2021-44659CriDec 22, 2021
    risk 0.64cvss 9.8epss 0.03

    Adding a new pipeline in GoCD server version 21.3.0 has a functionality that could be abused to do an un-intended action in order to achieve a Server Side Request Forgery (SSRF). NOTE: the vendor's position is that the observed behavior is not a vulnerability, because the…

  • CVE-2021-40091CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.01

    An SSRF issue was discovered in SquaredUp for SCOM 5.2.1.6654.

  • CVE-2021-22049CriNov 24, 2021
    risk 0.64cvss 9.8epss 0.02

    The vSphere Web Client (FLEX/Flash) contains an SSRF (Server Side Request Forgery) vulnerability in the vSAN Web Client (vSAN UI) plug-in. A malicious actor with network access to port 443 on vCenter Server may exploit this issue by accessing a URL request outside of vCenter…