Sploitus

CVE-2023-39108

No indexed exploits for CVE-2023-39108 yet

rconfig v3.9.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the path_b parameter in the doDiff Function of /classes/compareClass.php. This vulnerability allows authenticated attackers to make arbitrary requests via injection of crafted URLs.

Affected products
Rconfig
Rconfig
= 3.9.4
Fix
Available
CVSS 3.1
8.8 HIGH
EPSS
3.4% (88th percentile)
Weakness
CWE-918
NVD status
Modified
Published
2023-08-01
CVE-2023-39108 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2023-39108 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2023-39108 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.