Vulnerabilities > Server-Side Request Forgery (SSRF)

DATE CVE VULNERABILITY TITLE RISK
2018-05-02 CVE-2018-9919 Server-Side Request Forgery (SSRF) vulnerability in Tp-Shop 2.0.5/2.0.8
A web-accessible backdoor, with resultant SSRF, exists in Tp-shop 2.0.5 through 2.0.8, which allows remote attackers to obtain sensitive information, attack intranet hosts, or possibly trigger remote command execution, because /vendor/phpdocumentor/reflection-docblock/tests/phpDocumentor/Reflection/DocBlock/Tag/LinkTagTeet.php writes data from the "down_url" URL into the "bddlj" local file if the attacker knows the backdoor "jmmy" parameter.
network
low complexity
tp-shop CWE-918
critical
9.8
2018-05-02 CVE-2018-9302 Server-Side Request Forgery (SSRF) vulnerability in Getcockpit Cockpit
SSRF (Server Side Request Forgery) in /assets/lib/fuc.js.php in Cockpit 0.4.4 through 0.5.5 allows remote attackers to read arbitrary files or send TCP traffic to intranet hosts via the url parameter.
network
low complexity
getcockpit CWE-918
critical
9.1
2018-05-01 CVE-2018-8939 Server-Side Request Forgery (SSRF) vulnerability in Progress Whatsup Gold
An SSRF issue was discovered in NmAPI.exe in Ipswitch WhatsUp Gold before 2018 (18.0).
network
low complexity
progress CWE-918
critical
9.8
2018-04-25 CVE-2018-8801 Server-Side Request Forgery (SSRF) vulnerability in Gitlab
GitLab Community and Enterprise Editions version 8.3 up to 10.x before 10.3 are vulnerable to SSRF in the Services and webhooks component.
network
low complexity
gitlab CWE-918
6.5
2018-04-20 CVE-2018-10174 Server-Side Request Forgery (SSRF) vulnerability in Digitalguardian Management Console 7.1.2.0015
Digital Guardian Management Console 7.1.2.0015 has an SSRF issue that allows remote attackers to read arbitrary files via file:// URLs, send TCP traffic to intranet hosts, or obtain an NTLM hash.
network
low complexity
digitalguardian CWE-918
6.5
2018-04-19 CVE-2018-10220 Server-Side Request Forgery (SSRF) vulnerability in Mushmush Glastopf 3.1.3
Glastopf 3.1.3-dev has SSRF, as demonstrated by the abc.php a parameter.
network
low complexity
mushmush CWE-918
8.8
2018-04-10 CVE-2017-14611 Server-Side Request Forgery (SSRF) vulnerability in Agentejo Cockpit 0.13.0
SSRF (Server Side Request Forgery) in Cockpit 0.13.0 allows remote attackers to read arbitrary files or send TCP traffic to intranet hosts via the url parameter, related to use of the discontinued aheinze/fetch_url_contents component.
network
low complexity
agentejo CWE-918
critical
9.1
2018-04-10 CVE-2017-14323 Server-Side Request Forgery (SSRF) vulnerability in Onethink 1.0/1.1
SSRF (Server Side Request Forgery) in getRemoteImage.php in Ueditor in Onethink V1.0 and V1.1 allows remote attackers to obtain sensitive information, attack intranet hosts, or possibly trigger remote command execution via the upfile parameter.
network
low complexity
onethink CWE-918
critical
9.8
2018-04-04 CVE-2017-18096 Server-Side Request Forgery (SSRF) vulnerability in Atlassian Application Links
The OAuth status rest resource in Atlassian Application Links before version 5.2.7, from 5.3.0 before 5.3.4 and from 5.4.0 before 5.4.3 allows remote attackers with administrative rights to access the content of internal network resources via a Server Side Request Forgery (SSRF) by creating an OAuth application link to a location they control and then redirecting access from the linked location's OAuth status rest resource to an internal location.
network
low complexity
atlassian CWE-918
7.2
2018-03-30 CVE-2017-16614 Server-Side Request Forgery (SSRF) vulnerability in Tp-Shop Tpshop 2.0.5/2.0.6
SSRF (Server Side Request Forgery) in tpshop 2.0.5 and 2.0.6 allows remote attackers to obtain sensitive information, attack intranet hosts, or possibly trigger remote command execution via the plugins/payment/weixin/lib/WxPay.tedatac.php fBill parameter.
network
low complexity
tp-shop CWE-918
critical
9.8