cve/2021/CVE-2021-43449.md
2024-05-25 21:48:12 +02:00

714 B

CVE-2021-43449

Description

ONLYOFFICE all versions as of 2021-11-08 is vulnerable to Server-Side Request Forgery (SSRF). The document editor service can be abused to read and serve arbitrary URLs as a document.

POC

Reference

Github

No PoCs found on GitHub currently.