CVE-2024-27564 - CVE House
Back to Database
Status published Medium CVE-2024-27564

pictureproxy.php in the dirk1983 mm1.ltd source code f9f4bbc allows SSRF...

Vulnerability Description

pictureproxy.php in the dirk1983 mm1.ltd source code f9f4bbc allows SSRF via the url parameter. NOTE: the references section has an archived copy of pictureproxy.php from its original GitHub location, but the repository name might later change because it is misleading.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-27564

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

mm1.ltd source code
Vulnerable Versions:
f9f4bbc99eed7210b291ec116bd57b3d8276bee5

Timeline

Official Publish: March 5th, 2024
Last Modified: March 20th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N

Weaknesses (CWE)