WordPress Plugin Canto Multiple Server-Side Request Forgery Vulnerabilities - CVE-2020-28976 - Vulnerability Database

WordPress Plugin Canto Multiple Server-Side Request Forgery Vulnerabilities - CVE-2020-28976

High
Reference: CVE-2020-28976
Title: WordPress Plugin Canto Multiple Server-Side Request Forgery Vulnerabilities
Overview:

WordPress Plugin Canto is prone to multiple server-side request forgery vulnerabilities. An attacker may leverage these issues to make the vulnerable server perform port scanning of hosts in internal or external networks other attacks are also possible. WordPress Plugin Canto version 1.7.0 is vulnerable prior versions may also be affected.