YzmCMS v5.5 contains a server-side request forgery (SSRF) in the grab_image() function.
References
Link | Resource |
---|---|
https://github.com/yzmcms/yzmcms/issues/44 | Exploit Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2021-09-01 13:15
Updated : 2021-09-09 19:24
NVD link : CVE-2020-20341
Mitre link : CVE-2020-20341
JSON object : View
CWE
CWE-918
Server-Side Request Forgery (SSRF)
Products Affected
yzmcms
- yzmcms