Lucene search

K
cvelistMitreCVELIST:CVE-2020-21788
HistoryJun 24, 2021 - 2:48 p.m.

CVE-2020-21788

2021-06-2414:48:17
mitre
www.cve.org
3
crmeb
strict domain filtering
ssrf
vulnerability
copytaobao.php

AI Score

4.8

Confidence

High

EPSS

0.001

Percentile

24.8%

In CRMEB 3.1.0+ strict domain name filtering leads to SSRF(Server-Side Request Forgery). The vulnerable code is in file /crmeb/app/admin/controller/store/CopyTaobao.php.

AI Score

4.8

Confidence

High

EPSS

0.001

Percentile

24.8%

Related for CVELIST:CVE-2020-21788