GeoServer <= 2.18.5 and 2.19.x <= 2.19.2 - Server-Side Request Forgery via Proxy Host Configuration
Title source: llmExploitation Summary
CVE-2021-40822 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including phor3nsic. A Nuclei detection template is also available.
AI-analyzed exploit summary This repository contains a Python script to detect and verify the presence of CVE-2021-40822, an SSRF vulnerability in GeoServer. The script checks for GeoServer installation and tests for vulnerability by sending a crafted POST request.
Description
GeoServer through 2.18.5 and 2.19.x through 2.19.2 allows SSRF via the option for setting a proxy host.
Exploits (1)
This repository contains a Python script to detect and verify the presence of CVE-2021-40822, an SSRF vulnerability in GeoServer. The script checks for GeoServer installation and tests for vulnerability by sending a crafted POST request.
Nuclei Templates (1)
title:"GeoServer" || http.title:"geoserver"
app="GeoServer" || app="geoserver" || title="geoserver"
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N