Fallos del tipo CWE-918

3033 resultados

Server-Side Request Forgery (SSRF)

Ocorre quando a aplicação web busca conteúdo de uma URL fornecida pelo usuário sem validar adequadamente o destino. Um atacante consegue fazer o servidor requisitar URLs não autorizadas — internas, administrativas ou de terceiros — aproveitando a confiança e as permissões que o servidor possui na rede.

Ejemplo

Um sistema permite gerar thumbnails de imagens externas: o usuário passa uma URL e o servidor faz o download. Um atacante envia 'http://localhost:8080/admin' e consegue acessar painéis administrativos internos que não deveria. Ou envia 'http://169.254.169.254/latest/meta-data' em ambientes AWS e rouba credenciais.

Cómo mitigar

Mantenha uma whitelist rigorosa de domínios e IPs permitidos; bloqueie ranges privados (10.0.0.0/8, 127.0.0.0/8, 169.254.0.0/16) e metadados-servers por padrão; valide URLs antes de fazer requisições; use bibliotecas de parsing robustas; considere isolamento de rede para requisições externas.

CVE-2024-29736HIGHApache CXF: SSRF vulnerability via WADL stylesheet parameterEPSS 1.0%CVE-2021-34808MEDIUMServer-Side Request Forgery (SSRF) vulnerability in cgi component in Synology Media Server before 1.8.3-2881 allows remote attackers to acceEPSS 1.0%CVE-2021-36327MEDIUMDell EMC Streaming Data Platform versions before 1.3 contain a Server Side Request Forgery Vulnerability. A remote unauthenticated attacker EPSS 1.0%CVE-2022-24862HIGHServer-Side Request Forgery in DatabasirEPSS 1.0%CVE-2021-33926HIGHAn issue in Plone CMS v. 5.2.4, 5.2.3, 5.2.2, 5.2.1, 5.2.0, 5.1rc2, 5.1rc1, 5.1b4, 5.1b3, 5.1b2, 5.1a2, 5.1a1, 5.1.7, 5.1.6, 5.1.5, 5.1.4, 5EPSS 1.0%CVE-2021-24371—RSVPMaker < 8.7.3 - Authenticated (admin+) SSRFEPSS 1.0%CVE-2024-22203CRITICALWhoogle Search Server Side Request Forgery vulnerabilityEPSS 1.0%CVE-2022-23071—Recipes - SSRF on ImportEPSS 1.0%CVE-2023-48910CRITICALMicrocks up to 1.17.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /jobs and /artifact/download. This vuEPSS 1.0%CVE-2021-33184HIGHServer-Side request forgery (SSRF) vulnerability in task management component in Synology Download Station before 3.8.15-3563 allows remote EPSS 1.0%CVE-2023-23169MEDIUMSynapsoft pdfocus 1.17 is vulnerable to local file inclusion and server-side request forgery Directory Traversal.EPSS 1.0%CVE-2022-40700HIGHServer Side Request Forgery (SSRF) vulnerability affecting multiple WordPress pluginsEPSS 1.0%CVE-2022-0085LOWServer-Side Request Forgery (SSRF) in dompdf/dompdfEPSS 1.0%CVE-2026-21512MEDIUMAzure DevOps Server Cross-Site Scripting VulnerabilityEPSS 1.0%CVE-2021-22726—A CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EPSS 1.0%CVE-2022-0528MEDIUMServer-Side Request Forgery (SSRF) in transloadit/uppyEPSS 1.0%CVE-2024-27347MEDIUMApache HugeGraph-Hubble: SSRF in Hubble connection pageEPSS 1.0%CVE-2024-22205CRITICALWhoogle Search Server Side Request Forgery vulnerabilityEPSS 1.0%CVE-2019-6837—A Server-Side Request Forgery (SSRF): CWE-918 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.EPSS 1.0%CVE-2024-51980MEDIUMUnauthenticated Server Side Request Forgery (SSRF) via WS-Addressing affecting multiple models from Brother Industries, Ltd, FUJIFILM Business Innovation, Ricoh, Toshiba Tec, and Konica Minolta, Inc.EPSS 1.0%