CVE-2022-43699

CVE-2022-43699

OX App Suite before 7.10.6-rev30 allows SSRF because e-mail account discovery disregards the deny-list and thus can be attacked by an adversary who controls the DNS records of an external domain (found in the host part of an e-mail address).

Source: CVE-2022-43699

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다