Vulnerability Details CVE-2024-22873
Tencent Blueking CMDB v3.2.x to v3.9.x was discovered to contain a Server-Side Request Forgery (SSRF) via the event subscription function (/service/subscription.go). This vulnerability allows attackers to access internal requests via a crafted POST request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 34.8%
CVSS Severity
CVSS v3 Score 8.1
Products affected by CVE-2024-22873
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.10
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.11
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.12
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.13
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.14
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.15
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.16
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.17
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.18
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.19
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.2
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.20
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.21
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.22
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.23
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.24
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.25
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.26
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.3
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.4
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.5
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.6
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.8
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.2.9
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.4.2
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.4.3
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.1
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.10
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.11
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.12
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.13
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.14
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.15
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.16
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.17
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.18
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.19
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.2
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.20
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.21
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.22
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.23
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.24
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.25
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.26
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.27
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.28
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.29
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.3
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.30
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.31
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.32
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.33
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.34
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.35
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.36
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.37
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.38
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.39
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.4
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.40
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.41
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.42
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.43
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.44
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.45
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.46
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.47
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.48
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.49
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.5
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.50
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.51
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.52
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.6
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.7
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.8
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.5.9
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.6.1
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.6.2
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.6.3
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.6.4
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.6.5
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.7.1
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.7.2
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.7.3
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.7.4
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.7.5
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.7.6
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.7.7
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.1
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.10
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.11
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.12
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.13
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.14
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.15
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.16
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.17
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.2
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.3
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.4
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.5
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.6
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.7
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.8
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.8.9
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.1
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.10
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.11
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.12
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.13
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.14
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.15
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.16
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.17
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.18
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.19
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.2
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.20
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.21
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.22
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.23
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.24
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.25
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.26
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.27
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.28
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.29
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.3
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.30
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.31
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.32
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.33
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.34
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.35
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.36
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.37
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.38
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.39
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.4
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.40
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.41
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.42
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.43
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.44
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.45
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.46
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.47
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.5
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.6
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.7
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.8
-
cpe:2.3:a:tencent:blueking_configuration_management_database:3.9.9