Back to search
CVE-2017-15644
Published: Oct 19, 2017
Modified: Sep 16, 2024
PUBLISHED
Description
SSRF exists in Webmin 1.850 via the PATH_INFO to tunnel/link.cgi, as demonstrated by a GET request for tunnel/link.cgi/http://INTRANET-IP:8000.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.webmin.com/security.html
x_refsource_MISC
https://blogs.securiteam.com/index.php/archives/3430
x_refsource_MISC
http://www.webmin.com/changes.html
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now