CVE-2022-25026 | Rocket TRUfusion Portal 7.9.2.1 HTTP Request upDwModuleProxy server-side request forgery (EUVD-2022-29771)
A vulnerability has been found in Rocket TRUfusion Portal 7.9.2.1 and classified as critical. Affected by this issue is some unknown functionality of the file /trufusionPortal/upDwModuleProxy of the component HTTP Request Handler. This manipulation causes server-side request forgery.
This vulnerability appears as CVE-2022-25026. The attack may be initiated remotely. There is no available exploit.