PT-2023-29904 · Unknown · Motors – Car Dealer

Mika

·

Published

2023-11-13

·

Updated

2023-11-16

·

CVE-2023-46207

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Motors – Car Dealer, Classifieds & Listing versions 1.4.6 and earlier
Description A Server-Side Request Forgery (SSRF) issue has been identified. This issue allows an attacker to forge requests from the server, potentially leading to unauthorized access to internal systems or sensitive data.
Recommendations For versions 1.4.6 and earlier, update to a version that contains a fix for this issue, as no specific workaround is provided for these versions. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SSRF

Weakness Enumeration

Related Identifiers

CVE-2023-46207

Affected Products

Motors – Car Dealer