logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2020-14044

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2020-14044

Description:
** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Server-Side Request Forgery (SSRF) vulnerability was found in Codiad v1.7.8 and later. A user with admin privileges could use the plugin install feature to make the server request any URL via components/market/class.market.php. This could potentially result in remote code execution. NOTE: the vendor states "Codiad is no longer under active maintenance by core contributors."
Last updated date:
12/06/2022
Type:
exploit
Confidence:
HIGH
Date of publishing:
03/30/2021
Reference url to background

https://github.com/Codiad/Codiad/issues/1122

Type:
exploit
Confidence:
HIGH
Date of publishing:
12/06/2022
Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy