Security Advisory

CVE-2018-10220

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-04-19 08:00:00
Last updated 2024-08-05 07:32:01
Assigner mitre
State PUBLISHED

Description

Glastopf 3.1.3-dev has SSRF, as demonstrated by the abc.php a parameter. NOTE: the vendor indicates that this is intentional behavior because the product is a web application honeypot, and modules/handlers/emulators/rfi.py supports Remote File Inclusion emulation