Impact
The vulnerability is a server‑side request forgery in the cors‑proxy endpoint of Docs version 5.6.1. Attackers can supply a public document UUID to cause the server to perform outbound HTTP requests, potentially reaching internal network resources and retrieving sensitive image content. This flaw enables confidentiality and integrity compromise of internal systems and may facilitate further lateral movement. The weakness is categorized as CWE‑918.
Affected Systems
The affected product is Docs by suitenumerique, version 5.6.1. No later versions are listed as patched in the CVE data, so any deployment of the 5.6.1 release is vulnerable.
Risk and Exploitability
The CVSS score for this issue is 6.9, indicating a moderate severity vulnerability. The EPSS score is unavailable, so recent exploitation probability is unknown, and the vulnerability is not currently listed in the CISA KEV catalog. Attackers can exploit the unprotected endpoint remotely; the likely attack vector is initiating a crafted HTTP request to the cors‑proxy endpoint to trigger the SSRF. Successful exploitation requires only unauthenticated access, meaning any external user can exploit the flaw without prior credentials.
OpenCVE Enrichment