CVE-2026-79425

An authenticated Server-Side Request Forgery (SSRF) in the /adminapi/file/online_upload component of CRMEB v6.0.0 allows attackers to scan internal resources via a crafted POST request.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-15 15:17

Updated : 2026-09-15 19:17


NVD link : CVE-2026-79425

Mitre link : CVE-2026-79425

CVE.ORG link : CVE-2026-79425


JSON object : View

Products Affected

No product.

CWE
CWE-918

Server-Side Request Forgery (SSRF)