CVE-2022-1213

HIGH7.7EPSS 0.13%

Server side request forgery in LiveHelperChat

Published: 4/6/2022Modified: 12/6/2023
Also known as:GHSA-hhr9-7xvh-8xgcBIT-livehelperchat-2022-1213

Description

SSRF filter bypass port 80, 433 in LiveHelperChat prior to v3.67. An attacker could make the application perform arbitrary requests, bypass CVE-2022-1191

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.7CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:L

References (5)