Best Practical RT for Incident Response (RTIR) before 4.0.3 and 5.x before 5.0.3 allows SSRF via the whois lookup tool.
2022-07-14T12:15:11.330
2024-11-21T06:53:01.410
Modified
CVSSv3.1: 9.1 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | bestpractical | request_tracker_for_incident_response | < 4.0.3 | Yes |
Application | bestpractical | request_tracker_for_incident_response | < 5.0.3 | Yes |