CVE-2024-22648

A Blind SSRF vulnerability exists in the "Crawl Meta Data" functionality of SEO Panel version 4.10.0. This makes it possible for remote attackers to scan ports in the local environment.
References
Link Resource
https://github.com/cassis-sec/CVE/tree/main/2024/CVE-2024-22648 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:seopanel:seo_panel:4.10.0:*:*:*:*:*:*:*

History

03 Feb 2024, 00:29

Type Values Removed Values Added
First Time Seopanel
Seopanel seo Panel
CWE CWE-918
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
CPE cpe:2.3:a:seopanel:seo_panel:4.10.0:*:*:*:*:*:*:*
References () https://github.com/cassis-sec/CVE/tree/main/2024/CVE-2024-22648 - () https://github.com/cassis-sec/CVE/tree/main/2024/CVE-2024-22648 - Exploit, Third Party Advisory

30 Jan 2024, 14:18

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad de Blind SSRF en la funcionalidad "Crawl Meta Data" de SEO Panel versión 4.10.0. Esto hace posible que atacantes remotos escaneen puertos en el entorno local.

30 Jan 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-30 07:15

Updated : 2024-02-03 00:29


NVD link : CVE-2024-22648

Mitre link : CVE-2024-22648

CVE.ORG link : CVE-2024-22648


JSON object : View

Products Affected

seopanel

  • seo_panel
CWE
CWE-918

Server-Side Request Forgery (SSRF)