Vulnerabilities > CVE-2015-7570 - Server-Side Request Forgery (SSRF) vulnerability in Yeager CMS 1.2.1

047910
CVSS 7.2 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
NONE
network
low complexity
yeager
CWE-918
exploit available

Summary

Multiple server-side request forgery (SSRF) vulnerabilities in Yeager CMS 1.2.1 allow remote attackers to trigger outbound requests and enumerate open ports via the dbhost parameter to libs/org/adodb_lite/tests/test_adodb_lite.php, libs/org/adodb_lite/tests/test_datadictionary.php, or libs/org/adodb_lite/tests/test_adodb_lite_sessions.php.

Vulnerable Configurations

Part Description Count
Application
Yeager
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionYeager CMS 1.2.1 - Multiple Vulnerabilities. CVE-2015-7567,CVE-2015-7568,CVE-2015-7569,CVE-2015-7570,CVE-2015-7571,CVE-2015-7572. Webapps exploit for php pla...
fileexploits/php/webapps/39436.txt
idEDB-ID:39436
last seen2016-02-11
modified2016-02-10
platformphp
port80
published2016-02-10
reporterSEC Consult
sourcehttps://www.exploit-db.com/download/39436/
titleYeager CMS 1.2.1 - Multiple Vulnerabilities
typewebapps

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/135716/SA-20160210-0.txt
idPACKETSTORM:135716
last seen2016-12-05
published2016-02-11
reporterP. Morimoto
sourcehttps://packetstormsecurity.com/files/135716/Yeager-CMS-1.2.1-File-Upload-SQL-Injection-XSS-SSRF.html
titleYeager CMS 1.2.1 File Upload / SQL Injection / XSS / SSRF