The media-file upload feature in GeniXCMS up to and including 0.0.8 allows remote malicious users to conduct SSRF attacks via a URL, as demonstrated by a URL with an intranet IP address.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
metalgenix genixcms |