A Server-Side Request Forgery (SSRF) vulnerability exists in the upload link feature of mintplex-labs/anything-llm. This feature, intended for users with manager or admin roles, processes uploaded links through an internal Collector API using a headless browser. An attacker can exploit this by hosting a malicious website and using it to perform actions such as internal port scanning, accessing internal web applications not exposed externally, and interacting with the Collector API. This interaction can lead to unauthorized actions such as arbitrary file deletion and limited Local File Inclusion (LFI), including accessing NGINX access logs which may contain sensitive information.
History

Tue, 24 Sep 2024 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Mintplexlabs
Mintplexlabs anythingllm
CPEs cpe:2.3:a:mintplexlabs:anythingllm:*:*:*:*:*:*:*:*
Vendors & Products Mintplexlabs
Mintplexlabs anythingllm
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: @huntr_ai

Published: 2024-06-06T18:43:50.967Z

Updated: 2024-08-01T20:05:07.017Z

Reserved: 2024-04-01T17:55:37.677Z

Link: CVE-2024-3149

cve-icon Vulnrichment

Updated: 2024-08-01T20:05:07.017Z

cve-icon NVD

Status : Modified

Published: 2024-06-06T19:16:00.130

Modified: 2024-11-21T09:29:00.367

Link: CVE-2024-3149

cve-icon Redhat

No data.