CVE-2024-50811
Nov. 12, 2024, 1:56 p.m.
Tags
Product(s) Impacted
hopetree izone lts
- UNKNOWN
Description
hopetree izone lts c011b48 contains a server-side request forgery (SSRF) vulnerability in the active push function as \\apps\\tool\\apis\\bd_push.py does not securely filter user input through push_urls() and get_urls().
Weaknesses
Date
Published: Nov. 8, 2024, 7:15 p.m.
Last Modified: Nov. 12, 2024, 1:56 p.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org
References
https://github.com/
cve@mitre.org