Vulnerability Description
The Dundas BI server before 5.0.1.1010 is vulnerable to a Server-Side Request Forgery attack, allowing an attacker to forge arbitrary requests (with certain restrictions) that will be executed on behalf of the attacker, via the viewUrl parameter of the "export the dashboard as an image" feature. This could be leveraged to provide a proxy to attack other servers (internal or external) or to perform network scans of external or internal networks.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dundas | Dundas Bi | 5.0.1.1010 |
Related Weaknesses (CWE)
References
- https://www.shorebreaksecurity.com/blog/ssrfs-up-real-world-server-side-request-ExploitTechnical DescriptionThird Party Advisory
- https://www.shorebreaksecurity.com/blog/ssrfs-up-real-world-server-side-request-ExploitTechnical DescriptionThird Party Advisory
FAQ
What is CVE-2018-18569?
CVE-2018-18569 is a vulnerability with a CVSS score of 8.6 (HIGH). The Dundas BI server before 5.0.1.1010 is vulnerable to a Server-Side Request Forgery attack, allowing an attacker to forge arbitrary requests (with certain restrictions) that will be executed on beha...
How severe is CVE-2018-18569?
CVE-2018-18569 has been rated HIGH with a CVSS base score of 8.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-18569?
Check the references section above for vendor advisories and patch information. Affected products include: Dundas Dundas Bi.