Vulnerability Details CVE-2018-20228
Subsonic V6.1.5 allows internetRadioSettings.view streamUrl CSRF, with resultant SSRF.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 34.4%
CVSS Severity
CVSS v3 Score 8.0
CVSS v2 Score 6.0
Products affected by CVE-2018-20228
-
cpe:2.3:a:subsonic:subsonic:6.1.5