CVE-2024-55082: SSRF
Published Dec 19, 2024
·Updated
A Server-Side Request Forgery (SSRF) in the endpoint http://{your-server}/url-to-pdf of Stirling-PDF 0.35.1 allows attackers to access sensitive information via a crafted request.
Affected Software
1 affected component
Stirling Stirling-PDF
Event History
Dec 19, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-55082?
CVE-2024-55082 has a high severity rating due to its potential for unauthorized access to sensitive information.
2
How do I fix CVE-2024-55082?
To fix CVE-2024-55082, update to the latest version of Stirling-PDF that addresses this Server-Side Request Forgery vulnerability.
3
What versions of Stirling-PDF are affected by CVE-2024-55082?
CVE-2024-55082 affects Stirling-PDF 0.35.1 and possibly earlier versions.
4
What type of vulnerability is CVE-2024-55082?
CVE-2024-55082 is categorized as a Server-Side Request Forgery (SSRF) vulnerability.
5
What can attackers do with CVE-2024-55082?
Attackers can exploit CVE-2024-55082 to send crafted requests that could lead to access of sensitive information on the server.