Vulnerability Description
Multiple server-side request forgery (SSRF) vulnerabilities in Yeager CMS 1.2.1 allow remote attackers to trigger outbound requests and enumerate open ports via the dbhost parameter to libs/org/adodb_lite/tests/test_adodb_lite.php, libs/org/adodb_lite/tests/test_datadictionary.php, or libs/org/adodb_lite/tests/test_adodb_lite_sessions.php.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Yeager | Yeager Cms | 1.2.1 |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/135716/Yeager-CMS-1.2.1-File-Upload-SQL-InjExploitPatchThird Party Advisory
- http://seclists.org/fulldisclosure/2016/Feb/44Mailing ListPatchThird Party Advisory
- http://www.securityfocus.com/archive/1/537493/100/0/threaded
- https://www.exploit-db.com/exploits/39436/ExploitPatchThird Party Advisory
- http://packetstormsecurity.com/files/135716/Yeager-CMS-1.2.1-File-Upload-SQL-InjExploitPatchThird Party Advisory
- http://seclists.org/fulldisclosure/2016/Feb/44Mailing ListPatchThird Party Advisory
- http://www.securityfocus.com/archive/1/537493/100/0/threaded
- https://www.exploit-db.com/exploits/39436/ExploitPatchThird Party Advisory
FAQ
What is CVE-2015-7570?
CVE-2015-7570 is a vulnerability with a CVSS score of 7.2 (HIGH). Multiple server-side request forgery (SSRF) vulnerabilities in Yeager CMS 1.2.1 allow remote attackers to trigger outbound requests and enumerate open ports via the dbhost parameter to libs/org/adodb_...
How severe is CVE-2015-7570?
CVE-2015-7570 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-7570?
Check the references section above for vendor advisories and patch information. Affected products include: Yeager Yeager Cms.