Posts Tagged ‘forgery’

Subsonic 6.1.1 Server Side Request Forgery

Remote attackers can abuse the Podcast feature of subsonic to launch Server Side Request Forgery attacks from the subsonic server if an authenticated user clicks a malicious link or visits an attacker controlled webpage. Source: Subsonic 6.1.1 Server Side Request Forgery