CVE-2020-5784: SSRF
Published Oct 1, 2020
·Updated
Server-Side Request Forgery in Teltonika firmware TRB2R00.02.04.3 allows a low privileged user to cause the application to perform HTTP GET requests to arbitrary URLs.
Affected Software
2 affected components
Teltonika-networks Trb245 Firmware=00.02.04.03
Teltonika-networks Trb245
Event History
Oct 1, 2020
CVE Published
via MITRE·07:36 PM
Data Sourced
via MITRE·07:36 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-5784?
CVE-2020-5784 refers to the Server-Side Request Forgery vulnerability found in Teltonika firmware TRB2_R_00.02.04.3.
2
How severe is CVE-2020-5784?
CVE-2020-5784 has a severity score of 6.5, which is considered medium.
3
How does CVE-2020-5784 affect Teltonika firmware TRB2_R_00.02.04.3?
CVE-2020-5784 allows a low privileged user to cause the application to perform HTTP GET requests to arbitrary URLs in Teltonika firmware TRB2_R_00.02.04.3.
4
Is Teltonika firmware TRB245 affected by CVE-2020-5784?
No, Teltonika firmware TRB245 is not affected by CVE-2020-5784.
5
How can I fix CVE-2020-5784 in Teltonika firmware TRB2_R_00.02.04.3?
To fix CVE-2020-5784 in Teltonika firmware TRB2_R_00.02.04.3, it is recommended to update to a patched version provided by Teltonika Networks.