CVE-2020-1925
published 2020-01-09CVE-2020-1925: Apache Olingo versions 4.0.0 to 4.7.0 provide the AsyncRequestWrapperImpl class which reads a URL from the Location header, and then sends a GET or DELETE…
PriorityP344high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
2.83%
85.0th percentile
Apache Olingo versions 4.0.0 to 4.7.0 provide the AsyncRequestWrapperImpl class which reads a URL from the Location header, and then sends a GET or DELETE request to this URL. It may allow to implement a SSRF attack. If an attacker tricks a client to connect to a malicious server, the server can make the client call any URL including internal resources which are not directly accessible by the attacker.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | olingo | 4.0.0 – 4.7.0 | — |
| apache_software_foundation | apache_olingo | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
olingo-odata: Server side request forgery in AsyncResponseWrapperImpl
vendor_redhat·2020-01-08·CVSS 7.5
CVE-2020-1925 [HIGH] CWE-352 olingo-odata: Server side request forgery in AsyncResponseWrapperImpl
olingo-odata: Server side request forgery in AsyncResponseWrapperImpl
Apache Olingo versions 4.0.0 to 4.7.0 provide the AsyncRequestWrapperImpl class which reads a URL from the Location header, and then sends a GET or DELETE request to this URL. It may allow to implement a SSRF attack. If an attacker tricks a client to connect to a malicious server, the server can make the client call any URL including internal resources which are not directly accessible by the attacker.
Package: teiid-olingo (Red Hat JBoss Data Virtualization 6) - Out of support scope
Package: teiid-olingo-odata4 (Red Hat JBoss Data Virtualization 6) - Out of support scope
GHSA
Server-Side Request Forgery (SSRF) in Apache Olingo
ghsa·2020-02-04
CVE-2020-1925 [HIGH] CWE-918 Server-Side Request Forgery (SSRF) in Apache Olingo
Server-Side Request Forgery (SSRF) in Apache Olingo
Apache Olingo versions 4.0.0 to 4.7.0 provide the AsyncRequestWrapperImpl class which reads a URL from the Location header, and then sends a GET or DELETE request to this URL. It may allow to implement a SSRF attack. If an attacker tricks a client to connect to a malicious server, the server can make the client call any URL including internal resources which are not directly accessible by the attacker.
OSV
Server-Side Request Forgery (SSRF) in Apache Olingo
osv·2020-02-04
CVE-2020-1925 [HIGH] Server-Side Request Forgery (SSRF) in Apache Olingo
Server-Side Request Forgery (SSRF) in Apache Olingo
Apache Olingo versions 4.0.0 to 4.7.0 provide the AsyncRequestWrapperImpl class which reads a URL from the Location header, and then sends a GET or DELETE request to this URL. It may allow to implement a SSRF attack. If an attacker tricks a client to connect to a malicious server, the server can make the client call any URL including internal resources which are not directly accessible by the attacker.
No detection rules found.
No public exploits indexed.
2020-01-09
Published