CVE-2022-40842
9.1CRITICALndk design NdkAdvancedCustomizationFields 3.5.0 is vulnerable to Server-side request forgery (SSRF) via rotateimg.php.
Опубликовано: 11/22/2022Обновлено: 4/29/2025
Описание
ndk design NdkAdvancedCustomizationFields 3.5.0 is vulnerable to Server-side request forgery (SSRF) via rotateimg.php.
ИИ-АнализНа базе ИИ
Затронутые продукты
ndk-designndkadvancedcustomizationfields
Ссылки
- http://ndkadvancedcustomizationfields.comBroken LinkNot ApplicableURL Repurposed
- https://github.com/daaaalllii/cve-s/blob/main/CVE-2022-40842/poc.txtExploitThird Party Advisory
- http://ndkadvancedcustomizationfields.comBroken LinkNot ApplicableURL Repurposed
- https://github.com/daaaalllii/cve-s/blob/main/CVE-2022-40842/poc.txtExploitThird Party Advisory