Vulnerabilities > Server-Side Request Forgery (SSRF)
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-08-26 | CVE-2020-24548 | Server-Side Request Forgery (SSRF) vulnerability in Ericom Access Server 9.2.0 Ericom Access Server 9.2.0 (for AccessNow and Ericom Blaze) allows SSRF to make outbound WebSocket connection requests on arbitrary TCP ports, and provides "Cannot connect to" error messages to inform the attacker about closed ports. | 5.3 |
2020-08-25 | CVE-2020-17386 | Server-Side Request Forgery (SSRF) vulnerability in Cellopoint Cellos 4.1.10 Cellopoint CelloOS v4.1.10 Build 20190922 does not validate URL inputted properly. | 6.5 |
2020-08-24 | CVE-2020-14044 | Server-Side Request Forgery (SSRF) vulnerability in Codiad ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Server-Side Request Forgery (SSRF) vulnerability was found in Codiad v1.7.8 and later. | 7.2 |
2020-08-21 | CVE-2020-5775 | Server-Side Request Forgery (SSRF) vulnerability in Instructure Canvas Learning Management Service 20200729 Server-Side Request Forgery in Canvas LMS 2020-07-29 allows a remote, unauthenticated attacker to cause the Canvas application to perform HTTP GET requests to arbitrary domains. | 5.8 |
2020-08-17 | CVE-2020-15152 | Server-Side Request Forgery (SSRF) vulnerability in Ftp-Srv Project Ftp-Srv ftp-srv is an npm package which is a modern and extensible FTP server designed to be simple yet configurable. | 9.1 |
2020-08-17 | CVE-2020-8226 | Server-Side Request Forgery (SSRF) vulnerability in PHPbb A vulnerability exists in phpBB <v3.2.10 and <v3.3.1 which allowed remote image dimensions check to be used to SSRF. | 5.8 |
2020-08-13 | CVE-2020-13286 | Server-Side Request Forgery (SSRF) vulnerability in Gitlab For GitLab before 13.0.12, 13.1.6, 13.2.3 user controlled git configuration settings can be modified to result in Server Side Request Forgery. | 4.3 |
2020-08-11 | CVE-2020-14296 | Server-Side Request Forgery (SSRF) vulnerability in Redhat Cloudforms Management Engine 4.7/5.0 Red Hat CloudForms 4.7 and 5 was vulnerable to Server-Side Request Forgery (SSRF) flaw. | 7.1 |
2020-08-10 | CVE-2020-13295 | Server-Side Request Forgery (SSRF) vulnerability in Gitlab Runner For GitLab Runner before 13.0.12, 13.1.6, 13.2.3, by replacing dockerd with a malicious server, the Shared Runner is susceptible to SSRF. | 8.8 |
2020-08-09 | CVE-2020-16248 | Server-Side Request Forgery (SSRF) vulnerability in Prometheus Blackbox Exporter Prometheus Blackbox Exporter through 0.17.0 allows /probe?target= SSRF. | 5.8 |