Vulnerabilities > Crmeb > Crmeb
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-06-24 | CVE-2020-21788 | Server-Side Request Forgery (SSRF) vulnerability in Crmeb 3.1.0+ In CRMEB 3.1.0+ strict domain name filtering leads to SSRF(Server-Side Request Forgery). | 4.0 |
2020-10-23 | CVE-2020-25466 | Server-Side Request Forgery (SSRF) vulnerability in Crmeb 3.0 A SSRF vulnerability exists in the downloadimage interface of CRMEB 3.0, which can remotely download arbitrary files on the server and remotely execute arbitrary code. | 7.5 |