CVE-2023-6388

MEDIUM5.0EPSS 0.05%

Suite CRM v7.14.2 - SSRF

Published: 3/6/2024Modified: 5/20/2025

Description

Suite CRM version 7.14.2 allows making arbitrary HTTP requests through the vulnerable server. This is possible because the application is vulnerable to SSRF.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.0CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N

References (3)