← Back

CVE-2017-7553

nvd nist
Published: Sep 29, 2017Modified: May 13, 2026

JSON object

Loading...
6.3
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Exploitability: 2.8 / Impact: 3.4
Source: NVD

Description

The external_request api call in App Studio (millicore) allows server side request forgery (SSRF). An attacker could use this flaw to probe the network internal resources, and access restricted endpoints.

Affected (1)

1 product
Mobile Application Platform
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 4.4.3

References (6)

Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory

Timeline

No history available yet.