vendor:
https://www.drupal.org/download
by:
nu11secur1ty
7.5
CVSS
HIGH
Web Cache Poisoning
Web Cache Poisoning
CWE
Product Name: https://www.drupal.org/download
Affected Version From: drupal-10.1.2
Affected Version To: drupal-10.1.2
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2023
drupal-10.1.2 web-cache-poisoning-External-service-interaction
It is possible to induce the application to perform server-side HTTP requests to arbitrary domains. The payload d7lkti6pq8fjkx12ikwvye34ovuoie680wqjg75.oastify.com was submitted in the HTTP Host header. The application performed an HTTP request to the specified domain. For the second test, the attacker stored a response on the server with malicious content. This can be bad for a lot of users of this system if the attacker spreads a malicious URL and sends it by email etc. By using a redirect exploit.
Mitigation:
Unknown