SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Apache OFBiz Server-Side Request Forgery

Category: WEB-ATTACKS      

Arbitrary file properties reading vulnerability in Apache Software Foundation Apache OFBiz when user operates an uri call without authorizations. The same uri can be operated to realize a SSRF attack also without authorizations.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0778


Relevant Information