PT-2025-48413 · Orionsec · Orion-Ops
Sh7Err04
·
Published
2025-12-01
·
Updated
2025-12-01
·
CVE-2025-13809
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
orionsec orion-ops versions up to 5925824997a3109651bbde07460958a7be249ed1
Description
A server-side request forgery condition exists in the SSH Connection Handler component of orionsec orion-ops. The issue is related to the manipulation of the
host, sshPort, username, password, and authType arguments within the file orion-ops-api/orion-ops-web/src/main/java/cn/orionsec/ops/controller/MachineInfoController.java. This manipulation can be performed remotely. The exploit has been publicly disclosed.Recommendations
Apply a patch to remediate this issue.
Exploit
Fix
SSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Orion-Ops