CVE-2025-56563

CVE-2025-56563 published: A Server-Side Request Forgery vulnerability exists in sat_proxy.php in Zenith Satellite Tracker 1.0. The script accepts an attacker-controlled address URL parameter and passes it to curl_setopt(CURLOPT_URL) without host or scheme validation. An unauthentica...

View full NVD advisory → ← Back to CVE watch