CVE-2020-24710: SSRF
Published Oct 28, 2020
·Updated
Gophish before 0.11.0 allows SSRF attacks.
Affected Software
2 affected componentsFixes available
go/github.com/gophish/gophish<0.11.0
0.11.0
Getgophish Gophish<0.11.0
Remediation
Event History
Oct 28, 2020
CVE Published
via MITRE·07:33 PM
Data Sourced
via MITRE·07:33 PM
Description
May 24, 2022
Advisory Published
05:32 PM
Frequently Asked Questions
1
What is CVE-2020-24710?
CVE-2020-24710 is a vulnerability in Gophish versions before 0.11.0 that allows SSRF (Server-Side Request Forgery) attacks.
2
How severe is CVE-2020-24710?
The severity of CVE-2020-24710 is medium with a severity value of 5.3.
3
How can I mitigate CVE-2020-24710?
To mitigate CVE-2020-24710, update Gophish to version 0.11.0 or later.
4
Where can I find more information about CVE-2020-24710?
You can find more information about CVE-2020-24710 at the official NIST NVD website or the Gophish GitHub page.