'; } else{ echo ''; } echo '
|
|||
Release Date:2025/9/15
Rule Name:Weaver E-Mobile Server-Side Request Forgery Vulnerability
Severity:high
CVE ID:
Descripiton:
|
Weaver E-Mobile is a mobile office portal launched by Weaver, which connects e-cology processes, documents and meetings with one click, enabling enterprises to carry their business with them. The SSRF vulnerability in Weaver E-Mobile can allow attackers to scan the intranet, read local files or trigger internal services with the help of the server, resulting in information disclosure, service paralysis and even horizontal movement.This rule supports to defend the A6: Vulnerabe and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
Solution:
|
Update vendor patches.