CVE-2019-18394
24.10.2019, 11:15
A Server Side Request Forgery (SSRF) vulnerability in FaviconServlet.java in Ignite Realtime Openfire through 4.4.2 allows attackers to send arbitrary HTTP GET requests.
Vendor | Product | Version |
---|---|---|
igniterealtime | openfire | 𝑥 ≤ 4.4.2 |
𝑥
= Vulnerable software versions