CVE-2021-45851: SSRF
Published Mar 16, 2022
·Updated
A Server-Side Request Forgery (SSRF) attack in FUXA 1.1.3 can be carried out leading to the obtaining of sensitive information from the server's internal environment and services, often potentially leading to the attacker executing commands on the server.
Affected Software
1 affected component
frangoteam FUXA=1.1.3
Event History
Mar 16, 2022
CVE Published
via MITRE·09:51 AM
Data Sourced
via MITRE·09:51 AM
Description
Frequently Asked Questions
1
What is CVE-2021-45851 vulnerability?
CVE-2021-45851 is a Server-Side Request Forgery (SSRF) vulnerability in FUXA 1.1.3.
2
How does the SSRF attack in FUXA 1.1.3 work?
The SSRF attack in FUXA 1.1.3 allows an attacker to trick the server into making requests to internal resources, potentially leading to the disclosure of sensitive information or execution of commands on the server.
3
What is the severity of CVE-2021-45851?
CVE-2021-45851 has a severity rating of 7.5 (high).
4
Which version of FUXA is affected by CVE-2021-45851?
The vulnerability affects FUXA version 1.1.3.
5
How can I fix CVE-2021-45851 vulnerability in FUXA 1.1.3?
To fix the vulnerability, update FUXA to a version that includes a patch for CVE-2021-45851.