Pankaj Verma (_p4nk4j)

3 exploits Active since Nov 2020
CVE-2020-28978 EXPLOITDB MEDIUM WRITEUP
Canto - SSRF
The Canto plugin 1.3.0 for WordPress contains blind SSRF vulnerability. It allows an unauthenticated attacker can make a request to any internal and external server via /includes/lib/tree.php?subdomain=SSRF.
CVSS 5.3
CVE-2020-28977 EXPLOITDB MEDIUM WRITEUP
Canto - SSRF
The Canto plugin 1.3.0 for WordPress contains blind SSRF vulnerability. It allows an unauthenticated attacker can make a request to any internal and external server via /includes/lib/get.php?subdomain=SSRF.
CVSS 5.3
CVE-2020-28976 EXPLOITDB MEDIUM text WRITEUP
Canto - SSRF
The Canto plugin 1.3.0 for WordPress contains a blind SSRF vulnerability. It allows an unauthenticated attacker can make a request to any internal and external server via /includes/lib/detail.php?subdomain=SSRF.
CVSS 5.3