CVE-2020-25466
Description
A SSRF vulnerability exists in the downloadimage interface of CRMEB 3.0, which can remotely download arbitrary files on the server and remotely execute arbitrary code.
References
ProductVendor Advisory
Third Party Advisory
ExploitThird Party Advisory
CvssV3 impact
BaseSeverity | CRITICAL |
ConfidentialityImpact | HIGH |
AttackComplexity | LOW |
Scope | UNCHANGED |
AttackVector | NETWORK |
AvailabilityImpact | HIGH |
IntegrityImpact | HIGH |
PrivilegesRequired | NONE |
BaseScore | 9.8 |
VectorString | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Version | 3.1 |
UserInteraction | NONE |
CvssV2 impact
AccessComplexity | LOW |
ConfidentialityImpact | PARTIAL |
AvailabilityImpact | PARTIAL |
IntegrityImpact | PARTIAL |
BaseScore | 7.5 |
VectorString | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Version | 2.0 |
AccessVector | NETWORK |
Authentication | NONE |