The does not validate a parameter before making a request to it, which could allow unauthenticated users to perform SSRF attack
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 30 Jun 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apereo
Apereo central Authentication Service |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:apereo:central_authentication_service:-:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Apereo
Apereo central Authentication Service |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-01T20:40:47.185Z
Reserved: 2024-05-01T18:19:32.440Z
Link: CVE-2024-4399
Updated: 2024-08-01T20:40:47.185Z
Status : Analyzed
Published: 2024-05-23T06:15:11.577
Modified: 2025-06-30T18:44:29.540
Link: CVE-2024-4399
No data.
OpenCVE Enrichment
No data.
Weaknesses