CVE Published: 21/08/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: tenable |
Vendor: n/a |
Product: Instructure Canvas Learning Management System (LMS) Status : PUBLISHED
CVE-2020-5775 Description
Server-Side Request Forgery in Canvas LMS 2020-07-29 allows a remote, unauthenticated attacker to cause the Canvas application to perform HTTP GET requests to arbitrary domains.