Description
Softnext Mail SQR Expert is an email management platform, it has inadequate filtering for a specific URL parameter within a specific function. An unauthenticated remote attacker can perform Blind SSRF attack to discover internal network topology base on URL error response.
No analysis available yet.
Remediation
Vendor Solution
Update version to 230430.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-52431 | Softnext Mail SQR Expert is an email management platform, it has inadequate filtering for a specific URL parameter within a specific function. An unauthenticated remote attacker can perform Blind SSRF attack to discover internal network topology base on URL error response. |
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-7597-fff54-1.html |
|
History
No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-08-02T21:30:34.462Z
Reserved: 2023-11-16T03:49:45.972Z
Link: CVE-2023-48379
No data.
Status : Modified
Published: 2023-12-15T08:15:45.803
Modified: 2024-11-21T08:31:36.130
Link: CVE-2023-48379
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD