Server-side request forgery (SSRF) vulnerability in proxy.php in the jRSS Widget plugin 1.2 and earlier for WordPress allows remote attackers to trigger outbound requests and enumerate open ports via the url parameter.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-12-05T22:00:00Z
Updated: 2024-09-17T02:11:35.009Z
Reserved: 2014-12-05T00:00:00Z
Link: CVE-2014-9292
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2014-12-05T22:59:00.067
Modified: 2014-12-08T18:51:32.607
Link: CVE-2014-9292
Redhat
No data.