SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  NextChat WebDav API Server-Side Request Forgery

Category: WEB-ATTACKS      

NexChat v2.12.3 suffers from a Server-Side Request Forgery SSRF and Cross-Site Scripting vulnerability due to a lack of validation of the endpoint GET parameter on the WebDav API endpoint.


Relevant Information