NA

CVE-2022-25026

Published: 12/01/2023 Updated: 23/01/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A Server-Side Request Forgery (SSRF) in Rocket TRUfusion Portal v7.9.2.1 allows remote malicious users to gain access to sensitive resources on the internal network via a crafted HTTP request to /trufusionPortal/upDwModuleProxy.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rocketsoftware trufusion enterprise