CVE-2021-29357
12.04.2021, 19:15
The ECT Provider component in OutSystems Platform Server 10 before 10.0.1104.0 and 11 before 11.9.0 (and LifeTime management console before 11.7.0) allows SSRF for arbitrary outbound HTTP requests.
Vendor | Product | Version |
---|---|---|
outsystems | lifetime_management_console | 11 ≤ 𝑥 < 11.7.0 |
outsystems | outsystems | 10 ≤ 𝑥 < 10.0.1104.0 |
outsystems | platform_server | 11 ≤ 𝑥 < 11.9.0 |
𝑥
= Vulnerable software versions