{ "id": "CVE-2020-13484", "sourceIdentifier": "cve@mitre.org", "published": "2020-06-24T15:15:11.777", "lastModified": "2024-11-21T05:01:21.727", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Bitrix24 through 20.0.975 allows SSRF via an intranet IP address in the services/main/ajax.php?action=attachUrlPreview url parameter, if the destination URL hosts an HTML document containing '