LuquidPixels LiquiFire OS 4.8.0 allows SSRF via the call%3Durl substring followed by a URL in square brackets.
References
Link | Resource |
---|---|
https://code610.blogspot.com/2019/12/testing-ssrf-in-liquifireos.html | Exploit Third Party Advisory |
Configurations
Information
Published : 2019-12-28 21:15
Updated : 2020-01-02 11:26
NVD link : CVE-2019-20055
Mitre link : CVE-2019-20055
JSON object : View
CWE
CWE-918
Server-Side Request Forgery (SSRF)
Products Affected
liquidpixels
- liquifire_os