Record summary

CVE-2024-33832 has a selected CVSS score of 6.3 (medium); EIP currently links 1 Nuclei template.

Description

OneNav v0.9.35-20240318 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /index.php?c=api&method=get_link_info.

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated May 3, 2024 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus

Default status: unknown

CVE List*affected

Nuclei templates

1
ProjectDiscoveryMEDIUMOneNav v0.9.35-20240318 - Server-Side Request Forgery (SSRF)CVSS 6.5

OneNav v0.9.35-20240318 is vulnerable to server-side request forgery (SSRF) via the url parameter in the get_link_info API. An attacker can force the server to make arbitrary requests, potentially accessing internal resources.

Impact

Authenticated attackers can force the server to make arbitrary requests via the url parameter in the get_link_info API.

Remediation

Update OneNav to a version later than v0.9.35-20240318 that patches the SSRF vulnerability.

WeaknessesCWE-918
Authorsritikchaddha
Template tagscvecve2024ssrfonenavoastauthenticatedvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Shodan: http.favicon.hash:1111283449
FOFA: icon_hash="1111283449"

Source: ProjectDiscovery

References

2