CVE-2021-46107
Ligeo Archives Ligeo Basics - Server Side Request Forgery
Record summary
CVE-2021-46107 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.
Description
Ligeo Archives Ligeo Basics as of 02_01-2022 is vulnerable to Server Side Request Forgery (SSRF) which allows an attacker to read any documents via the download features.
Exploitation context
Available material
- Nuclei templates
- 1
Nuclei templates
1ProjectDiscoveryHIGHLigeo Archives Ligeo Basics - Server Side Request ForgeryCVSS 7.5
Ligeo Archives Ligeo Basics as of 02_01-2022 is vulnerable to Server Side Request Forgery (SSRF) which allows an attacker to read any documents via the download features.
Impact
The impact of this vulnerability is significant as it can result in unauthorized access to sensitive data or systems.
Remediation
Apply the latest security patches or updates provided by the vendor to fix the Server Side Request Forgery vulnerability.
Source: ProjectDiscovery