CVE-2018-16710

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
07/09/2018
Last modified:
05/08/2024

Description

OctoPrint through 1.3.9 allows remote attackers to obtain sensitive information or cause a denial of service via HTTP requests on port 8081. NOTE: the vendor disputes the significance of this report because their documentation states that with "blind port forwarding ... Putting OctoPrint onto the public internet is a terrible idea, and I really can't emphasize that enough.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:octoprint:octoprint:*:*:*:*:*:*:*:* 1.3.9 (including)


References to Advisories, Solutions, and Tools