Vulnerabilities (CVE)

Filtered by vendor Magpierss Project Subscribe
Filtered by product Magpierss
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-28941 1 Magpierss Project 1 Magpierss 2021-04-08 5.0 MEDIUM 5.3 MEDIUM
Because of no validation on a curl command in MagpieRSS 0.72 in the /extlib/Snoopy.class.inc file, when you send a request to the /scripts/magpie_debug.php or /scripts/magpie_simple.php page, it's possible to request any internal page if you use a https request.