S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Dec 1, 2025

CVE-2025-10211 Scanner

CVE-2025-10211 Scanner - Server-Side-Request-Forgery vulnerability in ChanCMS

Est. Time~1 minutes
Scan TypeSingle Scan
Targetsurl
CostFree
3.4k
Times Used
continuous scan runs
3.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2025-10211
2.1
CVSSmedium
Exploitable remotely over the internet · low-privilege account sufficient.

A security vulnerability has been detected in yanyutao0402 ChanCMS 3.3.0. The affected element is the function CollectController of the file /cms/collect/getArticle. The manipulation of the argument taskUrl leads to server-side request forgery. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Attack Vector
Network
Privileges Req.
Low
User Interaction
None
Affected
ChanCMSby yanyutao0402
3.3.0
Updated Aug 19, 2026View on NVD →
Detail

ChanCMS is a content management system widely used by small to medium businesses for dynamic website management. It provides various functionalities including content creation, editing, and publishing. The platform is known for its user-friendly interface that allows non-technical users to manage web content effectively. ChanCMS supports plugins and themes to extend its capabilities. It is generally employed in environments where ease of content management and quick deployment of websites are key requirements. The system is typically used by web administrators and developers who need a versatile CMS solution.

Server-Side Request Forgery (SSRF) is a vulnerability where an attacker can make a server process arbitrary HTTP requests. Traditional SSRF attacks allow attackers to send requests to websites from the vulnerable server, potentially accessing or manipulating internal resources. In this vulnerability, the attacker can manipulate the "taskUrl" argument to trigger this behavior. The vulnerability does not require special privileges and can be exploited remotely. SSRF can lead to sensitive data exposure if exploited effectively.

The SSRF vulnerability in ChanCMS occurs due to an insecure implementation allowing attackers to manipulate the "taskUrl" parameter in the /cms/collect/getArticle endpoint. This enables attackers to control where the server sends requests. The lack of validation or filtration on this parameter leads to arbitrary request capability. Exploitability requires the attacker to have network access to the vulnerable server. The vulnerability does not change existing user permissions but may expose backend network resources. This vulnerability is linked to CWE-918, which pertains to SSRF vulnerabilities.

If malicious actors exploit this SSRF vulnerability, they can potentially access and manipulate server resources or expose sensitive data. Attackers could use it for lateral network movements, exploiting internal services opportunistically. They might also gather sensitive data through unauthorized access to backend resources. The SSRF vulnerability could also serve as a stepping stone to further exploit the server hosting ChanCMS or its connected architectures. Over time, exploitation could disrupt regular service operations.

REFERENCES

Solution Advice
  • Update to the latest version of ChanCMS to mitigate this vulnerability.
  • Implement network firewall rules to restrict outbound HTTP requests from vulnerable servers.
  • Utilize web application firewalls (WAFs) to detect and block malicious payloads targeting SSRF.
  • Regularly audit and review your server configurations to minimize exposure to SSRF vectors.
  • Consider isolating services and applications to prevent SSRF attacks from accessing sensitive resources.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.