PT-2024-24886 · Unknown · Podlove Podcast Publisher

Majed Refaea

·

Published

2024-04-24

·

Updated

2024-04-24

·

CVE-2024-32812

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Podlove Podcast Publisher versions 4.0.11 and earlier
Description The issue is a Server-Side Request Forgery (SSRF) vulnerability. This means that an attacker could potentially force the server to make unintended requests, potentially leading to unauthorized access to sensitive data or systems.
Recommendations For versions 4.0.11 and earlier, update to a version later than 4.0.11 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SSRF

Weakness Enumeration

Related Identifiers

CVE-2024-32812

Affected Products

Podlove Podcast Publisher