| ID | CVE-2022-28997 | ||||||
| Sažetak | CSZCMS v1.3.0 allows attackers to execute a Server-Side Request Forgery (SSRF) which can be leveraged to leak sensitive data via a local file inclusion at /admin/filemanager/connector/. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:L/Au:N/C:P/I:N/A:N | ||||||
| Zadnje važnije ažuriranje | 03-06-2022 - 14:33 | ||||||
| Objavljeno | 23-05-2022 - 14:16 |

