CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 10.0. See the original NVD description below for full technical details.
CVE
CVE-2019-12153
Severity
CRITICAL
CVSS
10
EPSS
1.69%
Original NVD Description
Lack of validation in the HTML parser in RealObjects PDFreactor before 10.1.10722 leads to SSRF, allowing attackers to access network or file resources on behalf of the server by supplying malicious HTML content.
Related CVEs
Other vulnerabilities affecting the same vendor(s)