PT-2025-38855 · Smartdatasoft · Dricub

Bonds

·

Published

2025-09-22

·

Updated

2025-09-22

·

CVE-2025-58005

CVSS v3.1

5.4

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions SmartDataSoft DriCub versions through 2.9
Description A Server-Side Request Forgery (SSRF) issue exists in SmartDataSoft DriCub. This allows for Server Side Request Forgery. The vulnerability allows an attacker to make requests on behalf of the server, potentially accessing internal resources or performing actions with the server's privileges.
Recommendations Update SmartDataSoft DriCub to a version later than 2.9.

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2025-58005

Affected Products

Dricub