First published: Mon Sep 12 2022(Updated: )
SLiMS Senayan Library Management System v9.4.2 was discovered to contain multiple Server-Side Request Forgeries via the components /bibliography/marcsru.php and /bibliography/z3950sru.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Library Management System | =9.4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38292 is a vulnerability found in SLiMS Senayan Library Management System v9.4.2 that allows server-side request forgeries via the components /bibliography/marcsru.php and /bibliography/z3950sru.php.
CVE-2022-38292 is considered a critical vulnerability with a severity rating of 9.8.
SLiMS Senayan Library Management System v9.4.2 is the only affected software version by CVE-2022-38292.
Currently, there is no patch or fix available for CVE-2022-38292. It is recommended to stay updated with the latest information and security advisories from the SLiMS Senayan Library Management System developers.
Yes, you can refer to the following link for more detailed information: https://github.com/slims/slims9_bulian/issues/158