Blind SSRF vulnerability on cz\.acronis\.com

Post Reply
Shane1145
Posts: 1836
Joined: Wed Sep 25, 2024 2:31 pm

Blind SSRF vulnerability on cz\.acronis\.com

Post by Shane1145 »

I would like to report a Blind SSRF vulnerability on cz.acronis.com.
Affected Url: https://cz.acronis.com/wp-admin/admin-ajax.php
Parameter vulnerable: address and company
POC:
POST Request, payload in address body parameter:




https://hackerone.com/reports/1086206
Post Reply