CVE

CVE-2022-32457

CVE-2022-32457

Digiwin BPM has inadequate filtering for URL parameter. An unauthenticated remote attacker can perform Blind SSRF attack to discover internal network topology base on URL error response.

Source: CVE-2022-32457

Exit mobile version