ZeroHour

CVE-2021-29357

CVSS 3.1
8.6 high
EPSS
<1%p59
Published
()
Modified
Description

The ECT Provider component in OutSystems Platform Server 10 before 10.0.1104.0 and 11 before 11.9.0 (and LifeTime management console before 11.7.0) allows SSRF for arbitrary outbound HTTP requests.

Vendors
outsystems
Products
lifetime management console, outsystems, platform server
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.