Vulnerabilities > Server-Side Request Forgery (SSRF)
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-07-03 | CVE-2019-12852 | Server-Side Request Forgery (SSRF) vulnerability in Jetbrains Youtrack An SSRF attack was possible on a JetBrains YouTrack server. | 9.8 |
2019-06-11 | CVE-2019-12153 | Server-Side Request Forgery (SSRF) vulnerability in Realobjects Pdfreactor Lack of validation in the HTML parser in RealObjects PDFreactor before 10.1.10722 leads to SSRF, allowing attackers to access network or file resources on behalf of the server by supplying malicious HTML content. | 10.0 |
2019-06-05 | CVE-2019-9187 | Server-Side Request Forgery (SSRF) vulnerability in Ikiwiki ikiwiki before 3.20170111.1 and 3.2018x and 3.2019x before 3.20190228 allows SSRF via the aggregate plugin. | 7.5 |
2019-06-05 | CVE-2019-1872 | Server-Side Request Forgery (SSRF) vulnerability in Cisco Telepresence Video Communication Server A vulnerability in Cisco TelePresence Video Communication Server (VCS) and Cisco Expressway Series software could allow an unauthenticated, remote attacker to cause an affected system to send arbitrary network requests. | 5.3 |
2019-05-29 | CVE-2019-6981 | Server-Side Request Forgery (SSRF) vulnerability in Synacor Zimbra Collaboration Suite Zimbra Collaboration Suite 8.7.x through 8.8.11 allows Blind SSRF in the Feed component. | 6.5 |
2019-05-28 | CVE-2018-17198 | Server-Side Request Forgery (SSRF) vulnerability in Apache Roller Server-side Request Forgery (SSRF) and File Enumeration vulnerability in Apache Roller 5.2.1, 5.2.0 and earlier unsupported versions relies on Java SAX Parser to implement its XML-RPC interface and by default that parser supports external entities in XML DOCTYPE, which opens Roller up to SSRF / File Enumeration vulnerability. | 9.8 |
2019-05-23 | CVE-2017-13667 | Server-Side Request Forgery (SSRF) vulnerability in Open-Xchange Appsuite OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: SSRF. | 9.9 |
2019-05-23 | CVE-2017-15029 | Server-Side Request Forgery (SSRF) vulnerability in Open-Xchange Appsuite Open-Xchange GmbH OX App Suite 7.8.4 and earlier is affected by: SSRF. | 4.3 |
2019-05-17 | CVE-2019-12161 | Server-Side Request Forgery (SSRF) vulnerability in Webpagetest 19.04 WPO WebPageTest 19.04 allows SSRF because ValidateURL in www/runtest.php does not consider octal encoding of IP addresses (such as 0300.0250 as a replacement for 192.168). | 8.8 |
2019-05-14 | CVE-2019-6516 | Server-Side Request Forgery (SSRF) vulnerability in Wso2 Dashboard Server 2.0.0 An issue was discovered in WSO2 Dashboard Server 2.0.0. | 5.8 |