yunuscadirci

2 exploits Active since Jun 2020
CVE-2020-12695 NOMISEC HIGH WORKING POC
Open Connectivity Foundation UPnP <2020-04-17 - SSRF
The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.
403 stars
CVSS 7.5
CVE-2020-12695 NOMISEC HIGH WRITEUP
Open Connectivity Foundation UPnP <2020-04-17 - SSRF
The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.
6 stars
CVSS 7.5