Vulnerabilities > CVE-2024-13032 - Server-Side Request Forgery (SSRF) vulnerability in Antabot White-Jotter

047910
CVSS 4.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
antabot
CWE-918

Summary

A vulnerability classified as problematic was found in Antabot White-Jotter up to 0.2.2. Affected by this vulnerability is an unknown functionality of the file /admin/content/editor of the component Article Editor. The manipulation of the argument articleCover leads to server-side request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Vulnerable Configurations

Part Description Count
Application
Antabot
1

Common Weakness Enumeration (CWE)