CVE-2021-4075: Server-Side Request Forgery (SSRF) in snipe/snipe-it

Published Dec 6, 2021
·
Updated

Admin users on the external network can perform blind POST-based SSRF (issue requests on behalf of the server into the internal network) via the Slack Integration. This vulnerability is capable of port-scanning of the internal network, issue POST requests to web servers on the internal network which can be escalated to higher-impact.

Other sources

snipe-it is vulnerable to Server-Side Request Forgery (SSRF)

Affected Software

2 affected componentsFixes available
composer/snipe/snipe-it<=5.3.3
6.0.0-GM
Snipeitapp Snipe-it

Event History

Dec 6, 2021
CVE Published
via MITRE·08:20 PM
Data Sourced
via MITRE·08:20 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 10, 2021
Advisory Published
08:22 PM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is CVE-2021-4075?

CVE-2021-4075 is a vulnerability that allows admin users on the external network to perform blind POST-based SSRF, which can lead to port-scanning and issuing POST requests on behalf of the server into the internal network.

2

Who is affected by CVE-2021-4075?

Admin users on the external network using Snipe-IT versions up to and including 5.3.3 are affected by CVE-2021-4075.

3

How severe is CVE-2021-4075?

CVE-2021-4075 has a severity rating of 7.2 out of 10, indicating a high level of severity.

4

How can admins mitigate the vulnerability?

Admins can mitigate the vulnerability by updating Snipe-IT to version 6.0.0-GM or newer.

5

What is SSRF?

SSRF stands for Server-Side Request Forgery and refers to an attack where an attacker can issue requests from the server to other internal or external resources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203
CVE-2021-4075 - Server-Side Request Forgery (SSRF) in snipe/snipe-it - SecAlerts