concrete5 Server-Side Request Forgery (SSRF) Vulnerability - CVE-2018-13790 - Vulnerability Database

concrete5 Server-Side Request Forgery (SSRF) Vulnerability - CVE-2018-13790

High
Reference: CVE-2018-13790
Title: concrete5 Server-Side Request Forgery (SSRF) Vulnerability
Overview:

A Server Side Request Forgery (SSRF) vulnerability in tools/files/importers/remote.php in concrete5 8.2.0 can lead to attacks on the local network and mapping of the internal network because of URL functionality on the File Manager page.