A post-authenticated server-side request forgery (SSRF)...
Moderate severity
Unreviewed
Published
Jan 23, 2024
to the GitHub Advisory Database
•
Updated Feb 7, 2024
Description
Published by the National Vulnerability Database
Jan 23, 2024
Published to the GitHub Advisory Database
Jan 23, 2024
Last updated
Feb 7, 2024
A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build 6481) could allow an attacker to interact with internal or local services directly.
Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
This is a similar, but not identical vulnerability as CVE-2023-38624.
References