Harbor prior to version 2.0.1 is vulnerable to SSRF attacks, allowing unauthorized scanning of intranet hosts' ports. Learn how to mitigate this CVE-2020-13788 vulnerability.
Harbor prior to 2.0.1 allows SSRF with the limitation that an attacker with project editing abilities can scan ports of hosts accessible on the Harbor server's intranet.
Understanding CVE-2020-13788
Harbor vulnerability allowing SSRF attacks.
What is CVE-2020-13788?
Harbor version prior to 2.0.1 is susceptible to Server-Side Request Forgery (SSRF) attacks, enabling attackers to scan ports of intranet hosts accessible via the Harbor server.
The Impact of CVE-2020-13788
Technical Details of CVE-2020-13788
Harbor SSRF vulnerability details.
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Protecting systems from CVE-2020-13788.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates