Search

Contact Us

Log in

Vulnerabilities / Server-side request forgery

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L

Severity
high
CWE NameServer-side request forgery
CWE IDCWE-918
CWE Score4.8
Compliance
OWASP TOP10 -> A10
PCI-DSS -> 6.5.1
ISO 27001 -> A.5.33, A.5.34, A.8.3, A.8.4, A.8.12
HIPAA -> 164.306(a)
CVSS
Attack VectorNetwork
Attack ComplexityHigh
Privileges RequiredNone
User InteractionNone
ScopeUnchanged
Confidentiality ImpactNone
Integrity ImpactLow
Availability ImpactLow
Server-side request forgery