CVE-2021-39497
07.09.2021, 20:15
eyoucms 1.5.4 lacks sanitization of input data, allowing an attacker to inject a url to trigger blind SSRF via the saveRemote() function.
Vendor | Product | Version |
---|---|---|
eyoucms | eyoucms | 1.5.4 |
𝑥
= Vulnerable software versions
eyoucms 1.5.4 lacks sanitization of input data, allowing an attacker to inject a url to trigger blind SSRF via the saveRemote() function.
Vendor | Product | Version |
---|---|---|
eyoucms | eyoucms | 1.5.4 |