CVE-2017-11291: SSRF
Published Dec 9, 2017
·Updated
An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A Server-Side Request Forgery (SSRF) vulnerability exists that could be abused to bypass network access controls.
Affected Software
1 affected component
Adobe Connect<=9.6.2
Event History
Dec 9, 2017
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2017-11291?
CVE-2017-11291 is a Server-Side Request Forgery (SSRF) vulnerability in Adobe Connect 9.6.2 and earlier versions.
2
How can this vulnerability be exploited?
This vulnerability can be abused to bypass network access controls.
3
How severe is CVE-2017-11291?
CVE-2017-11291 is considered critical with a severity value of 10.
4
What is the affected software?
The affected software is Adobe Connect 9.6.2 and earlier versions.
5
Is there a fix available for this vulnerability?
Yes, Adobe has released a security update to address the vulnerability. Please refer to the references for more information.