U.S. Dept Of Defense: Unauthenticated Blind SSRF at https://█████ via xmlrpc.php file

**Description:** Hi team, I would like to report a security vulnerability I discovered on your website. I was able to perform Server-Side Request Forgery (SSRF) attacks via the xmlrpc.php file at http ...

Continue Reading
U.S. Dept Of Defense: Unauthenticated Blind SSRF at https://█████ via xmlrpc.php file

**Description:** Hi team, I would like to report a security vulnerability I discovered on your website. I was able to perform Server-Side Request Forgery (SSRF) attacks via the xmlrpc.php file at http ...

Continue Reading
U.S. Dept Of Defense: Unauthenticated Blind SSRF at https://█████ via xmlrpc.php file

**Description:** Hi team, I would like to report a security vulnerability I discovered on your website. I was able to perform Server-Side Request Forgery (SSRF) attacks via the xmlrpc.php file at http ...

Continue Reading
U.S. Dept Of Defense: Unauthenticated Blind SSRF at https://█████ via xmlrpc.php file

**Description:** Hi team, I would like to report a security vulnerability I discovered on your website. I was able to perform Server-Side Request Forgery (SSRF) attacks via the xmlrpc.php file at http ...

Continue Reading
U.S. Dept Of Defense: Unauthenticated Blind SSRF at https://█████ via xmlrpc.php file

**Description:** Hi team, I would like to report a security vulnerability I discovered on your website. I was able to perform Server-Side Request Forgery (SSRF) attacks via the xmlrpc.php file at http ...

Continue Reading
U.S. Dept Of Defense: Unauthenticated Blind SSRF at https://█████ via xmlrpc.php file

**Description:** Hi team, I would like to report a security vulnerability I discovered on your website. I was able to perform Server-Side Request Forgery (SSRF) attacks via the xmlrpc.php file at http ...

Continue Reading
U.S. Dept Of Defense: Unauthenticated Blind SSRF at https://█████ via xmlrpc.php file

**Description:** Hi team, I would like to report a security vulnerability I discovered on your website. I was able to perform Server-Side Request Forgery (SSRF) attacks via the xmlrpc.php file at http ...

Continue Reading
Denial Of Service (DoS)

lava is vulnerable to Denial Of Service (DoS). The vulnerability exists because the users with valid credentials can submit crafted XMLRPC requests that cause a recursive XML entity expansion, leading ...

Continue Reading

CVSS3 - MEDIUM

Back to Main

Subscribe for the latest news: