hopetree izone lts c011b48 contains a server-side request forgery (SSRF) vulnerability in the active push function as \\apps\\tool\\apis\\bd_push.py does not securely filter user input through push_urls() and get_urls().
This Cyber News was published on www.tenable.com. Publication date: Sat, 09 Nov 2024 17:11:02 +0000