CVE-2022-4130 - CERT CVE
ID CVE-2022-4130
Sažetak A blind site-to-site request forgery vulnerability was found in Satellite server. It is possible to trigger an external interaction to an attacker's server by modifying the Referer header in an HTTP request of specific resources in the server.
Reference
CVSS
Base: 4.5
Impact: 3.6
Exploitability:0.9
Pristup
VektorSloženostAutentikacija
NETWORK LOW HIGH
Impact
PovjerljivostCjelovitostDostupnost
NONE HIGH NONE
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N
Zadnje važnije ažuriranje 14-04-2025 - 19:15
Objavljeno 16-12-2022 - 16:15