← voltar
CVE-2024-29035

Umbraco's Blind SSRF Leads to Port Scan by using Webhooks

CVSS 4.1 MEDIUMEPSS 0.4%CWE-918
Umbraco is an ASP.NET CMS. Failing webhooks logs are available when solution is not in debug mode. Those logs can contain information that is critical. This vulnerability is fixed in 13.1.1.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N
Produtos afetados
umbraco · Umbraco-CMS

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →