CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. It may be remotely exploitable.
CVE
CVE-2022-32457
Severity
MEDIUM
CVSS
5.3
EPSS
0.78%
Original NVD Description
Digiwin BPM has inadequate filtering for URL parameter. An unauthenticated remote attacker can perform Blind SSRF attack to discover internal network topology base on URL error response.
Related CVEs
Other vulnerabilities affecting the same vendor(s)