CVE-2022-38292: SSRF
SLiMS Senayan Library Management System v9.4.2 was discovered to contain multiple Server-Side Request Forgeries via the components /bibliography/marcsru.php and /bibliography/z3950sru.php.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-38292?
CVE-2022-38292 is a vulnerability found in SLiMS Senayan Library Management System v9.4.2 that allows server-side request forgeries via the components /bibliography/marcsru.php and /bibliography/z3950sru.php.
How severe is CVE-2022-38292?
CVE-2022-38292 is considered a critical vulnerability with a severity rating of 9.8.
What software versions are affected by CVE-2022-38292?
SLiMS Senayan Library Management System v9.4.2 is the only affected software version by CVE-2022-38292.
How can I fix CVE-2022-38292?
Currently, there is no patch or fix available for CVE-2022-38292. It is recommended to stay updated with the latest information and security advisories from the SLiMS Senayan Library Management System developers.
Is there any additional information available about CVE-2022-38292?
Yes, you can refer to the following link for more detailed information: https://github.com/slims/slims9_bulian/issues/158