ZeroHour

CVE-2023-6199

PoC
CVSS 3.1
6.5 medium
EPSS
1%p71
Published
()
Modified
Description

Book Stack version 23.10.2 allows filtering local files on the server. This is possible because the application is vulnerable to SSRF.

Vendors
bookstackapp
Products
bookstack
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.