CVE CVE-2017-14323 Mappings

SSRF (Server Side Request Forgery) in getRemoteImage.php in Ueditor in Onethink V1.0 and V1.1 allows remote attackers to obtain sensitive information, attack intranet hosts, or possibly trigger remote command execution via the upfile parameter.

Mappings

Capability ID Capability Description Mapping Type ATT&CK ID ATT&CK Name
CVE-2017-14323 n/a uncategorized T1210 Exploitation of Remote Services
CVE-2017-14323 n/a uncategorized T1046 Network Service Scanning
CVE-2017-14323 n/a uncategorized T1059 Command and Scripting Interpreter