A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface, which in specific conditions could potentially enable a remote unauthenticated attacker to cause the appliance to make requests to an unintended location.
History

Wed, 30 Apr 2025 20:45:00 +0000

Type Values Removed Values Added
References

Wed, 30 Apr 2025 19:00:00 +0000

Type Values Removed Values Added
Description A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface, which in specific conditions could potentially enable a remote unauthenticated attacker to cause the appliance to make requests to an unintended location.
Weaknesses CWE-918
References

cve-icon MITRE

Status: PUBLISHED

Assigner: sonicwall

Published: 2025-04-30T18:46:34.939Z

Updated: 2025-04-30T20:03:18.901Z

Reserved: 2025-03-10T14:56:38.795Z

Link: CVE-2025-2170

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-04-30T19:15:55.227

Modified: 2025-04-30T20:15:21.690

Link: CVE-2025-2170

cve-icon Redhat

No data.