CVE-2022-25800: SSRF
Best Practical RT for Incident Response (RTIR) before 4.0.3 and 5.x before 5.0.3 allows SSRF via the whois lookup tool.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-25800?
CVE-2022-25800 is a vulnerability in Best Practical RT for Incident Response (RTIR) before 4.0.3 and 5.x before 5.0.3 that allows SSRF via the whois lookup tool.
How severe is CVE-2022-25800?
CVE-2022-25800 has a severity rating of 9.1, which is considered critical.
What software versions are affected by CVE-2022-25800?
CVE-2022-25800 affects Best Practical RT for Incident Response (RTIR) versions before 4.0.3 and 5.x before 5.0.3.
How can I fix CVE-2022-25800?
To fix CVE-2022-25800, you should update Best Practical RT for Incident Response (RTIR) to version 4.0.3 or later for versions before 5.x, and to version 5.0.3 or later for version 5.x.
Where can I find more information about CVE-2022-25800?
You can find more information about CVE-2022-25800 in the following references: [1](https://docs.bestpractical.com/release-notes/rtir/4.0.3), [2](https://docs.bestpractical.com/release-notes/rtir/5.0.3), [3](https://docs.bestpractical.com/release-notes/rtir/index.html).