Description
Server-side request forgery (SSRF) in PingFederate allows unauthenticated http requests to attack network resources and consume server-side resources via forged HTTP POST requests.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44755 | Server-side request forgery (SSRF) in PingFederate allows unauthenticated http requests to attack network resources and consume server-side resources via forged HTTP POST requests. |
References
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: Ping Identity
Published:
Updated: 2024-08-12T15:09:02.174Z
Reserved: 2023-08-25T16:59:38.680Z
Link: CVE-2023-40148
Updated: 2024-08-02T18:24:55.608Z
Status : Deferred
Published: 2024-04-10T00:15:09.630
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-40148
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD