This is a Server-Side Request Forgery (SSRF)...
Moderate severity
Unreviewed
Published
Mar 14, 2024
to the GitHub Advisory Database
•
Updated Mar 14, 2024
Description
Published by the National Vulnerability Database
Mar 14, 2024
Published to the GitHub Advisory Database
Mar 14, 2024
Last updated
Mar 14, 2024
This is a Server-Side Request Forgery (SSRF) vulnerability in the PaperCut NG/MF server-side module that allows an attacker to induce the server-side application to make HTTP requests to an arbitrary domain of the attacker's choosing.
References