Impact
A vulnerability in SveltyCMS 0.0.6 allows an attacker to manipulate the /mediagallery/upload-media endpoint so that the server initiates a request to an arbitrary URL specified by the attacker. This results in a server‑side request forgery (SSRF) that can expose internal network resources or send data to external destinations without the user’s consent. The flaw does not directly grant code execution or privilege escalation, but it can be leveraged to pivot further attacks or exfiltrate sensitive data.
Affected Systems
SveltyCMS version 0.0.6, specifically the file upload component located at /mediagallery/upload-media. The vendor name is SveltyCMS and the affected component is the File Upload Endpoint.
Risk and Exploitability
The CVSS score of 5.3 indicates a medium risk level. The EPSS score is <1%, and the flaw is not listed in CISA KEV, indicating no known active exploitation. The attack vector is remote, as an attacker can trigger the vulnerable endpoint by sending a specially crafted request. Exploitation would require an authenticated or unauthenticated user to possess the ability to upload media, but no other special conditions are described.
OpenCVE Enrichment