CVE-2022-32457 Information
Jul 21, 2022
cve
Description
Digiwin BPM has inadequate filtering for URL parameter. An unauthenticated remote attacker can perform Blind SSRF attack to discover internal network topology base on URL error response.
Reference
https://www.twcert.org.tw/tw/cp-132-6287-20ef0-1.html
Share on: