logo

CVE-2025-56563: Server-Side Request Forgery in Zenith Satellite Tracker

ID: bfc75b23-0e70-5cdf-a5bf-15dbab7fe955

STIX ID: report--bfc75b23-0e70-5cdf-a5bf-15dbab7fe955

Feed Name: CosmicBytez Labs

Threat Score
85/100

Date Published: 2026-09-17

Date Updated: 2026-09-18

...
...

**CVE-2025-56563 — Zenith Satellite Tracker 1.0 (sat_proxy.php) SSRF, CVSS 9.8 (Critical):** An unauthenticated full-response Server-Side Request Forgery in the sat_proxy.php endpoint allows attackers to force the server to make arbitrary outbound requests (including to localhost, RFC1918 ranges, and cloud metadata endpoints), enabling credential theft, internal network reconnaissance/pivoting, and use as an open proxy. The report provides PoC examples, impact assessment, and recommended mitigations such as disabling the proxy, implementing allow-listing and egress restrictions, enforcing IMDSv2, and adding WAF/reverse-proxy rules.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.