Vulnerabilities > CVE-2023-42361 - Server-Side Request Forgery (SSRF) vulnerability in Midori-Global Better PDF Exporter 10.0.0/10.3.0

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
midori-global
CWE-918

Summary

Local File Inclusion vulnerability in Midori-global Better PDF Exporter for Jira Server and Jira Data Center v.10.3.0 and before allows an attacker to view arbitrary files and cause other impacts via use of crafted image during PDF export.

Common Weakness Enumeration (CWE)