CVE-2024-12801: SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Server-Side Request Forgery (SSRF) in SaxEventRecorder by QOS.CH logback version 0.1 to 1.3.14 and 1.4.0 to 1.5.12 on the Java platform, allows an attacker to forge requests by compromising logback configuration files in XML.
The attacks involves the modification of DOCTYPE declaration in XML configuration files.
Other sources
Server-Side Request Forgery (SSRF) in SaxEventRecorder by QOS.CH logback version 1.5.12 on the Java platform, allows an attacker to forge requests by compromising logback configuration files in XML. The attacks involves the modification of DOCTYPE declaration in XML configuration files.
— GitHub
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12801?
CVE-2024-12801 has been assessed as a critical vulnerability due to its potential to allow Server-Side Request Forgery (SSRF) attacks.
How do I fix CVE-2024-12801?
To fix CVE-2024-12801, upgrade the logback-core package to version 1.3.15 or to any version from 1.5.13 and above.
Which versions of logback are affected by CVE-2024-12801?
CVE-2024-12801 affects logback-core versions from 0.1 up to 1.3.14 and from 1.4.0 up to 1.5.12.
What type of vulnerability is CVE-2024-12801?
CVE-2024-12801 is classified as a Server-Side Request Forgery (SSRF) vulnerability.
Can exploiting CVE-2024-12801 lead to data breaches?
Yes, exploiting CVE-2024-12801 can potentially lead to data breaches by allowing attackers to execute unauthorized requests.