CVE-2022-32457
20.07.2022, 02:15
Digiwin BPM has inadequate filtering for URL parameter. An unauthenticated remote attacker can perform Blind SSRF attack to discover internal network topology base on URL error response.
Vendor | Product | Version |
---|---|---|
digiwin | business_process_management | 𝑥 < 5.8.8.1 |
𝑥
= Vulnerable software versions