ZeroHour

CVE-2017-7553

CVSS 3.0
6.3 medium
EPSS
<1%p51
Published
()
Modified
Description

The external_request api call in App Studio (millicore) allows server side request forgery (SSRF). An attacker could use this flaw to probe the network internal resources, and access restricted endpoints.

Vendors
redhat
Products
mobile application platform
Weakness
CWE-918
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.