8Kas
CVE-2024-50811 | hopetree izone c011b48 bd_push.py push_urls/get_urls server-side request forgery (Issue 290)
A vulnerability classified as critical was found in hopetree izone c011b48. Affected by this vulnerability is the functionpush_urls/get_urls
of the file \apps\tool\apis\bd_push.py. The manipulation leads to server-side request forgery.
This vulnerability is known as CVE-2024-50811. The attack needs to be done within the local network. There is no exploit available.