Vulnerabilities > CVE-2020-7739 - Server-Side Request Forgery (SSRF) vulnerability in Phantomjs-Seo Project Phantomjs-Seo 1.0.0

047910
CVSS 6.4 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
phantomjs-seo-project
CWE-918

Summary

This affects all versions of package phantomjs-seo. It is possible for an attacker to craft a url that will be passed to a PhantomJS instance allowing for an SSRF attack.

Vulnerable Configurations

Part Description Count
Application
Phantomjs-Seo_Project
1

Common Weakness Enumeration (CWE)