CVE-2017-1000139

CVE-2017-1000139

Mahara 1.8 before 1.8.7 and 1.9 before 1.9.5 and 1.10 before 1.10.3 and 15.04 before 15.04.0 are vulnerable to server-side request forgery attacks as not all processes of curl redirects are checked against a white or black list. Employing SafeCurl will prevent issues.

Source: CVE-2017-1000139

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다