The ECT Provider component in OutSystems Platform Server 10 prior to 10.0.1104.0 and 11 prior to 11.9.0 (and LifeTime management console prior to 11.7.0) allows SSRF for arbitrary outbound HTTP requests.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
outsystems lifetime management console |
||
outsystems platform server |
||
outsystems outsystems |