Sceawere

Vulnerability Detail

CVE-2026-80464UPDATED Verified Sceawere Triage Sources: NVD / CISA KEV

SSRF in HAVELSAN Sef Platform

Vulnerability Metadata

Severity
Medium
Score / CVSS
4.9
Creation Date
14h ago
Vendor
HAVELSAN Inc.
Product
Sef - AI Chatbot Platform
Attack Type
CWE-918 Server-Side request forgery (SSRF)
Vector String
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Attack Complexity
LOW

Narrative and Response

Description

Server-Side request forgery (SSRF) vulnerability in HAVELSAN Inc. Sef - AI Chatbot Platform allows Server Side Request Forgery. This issue affects Sef - AI Chatbot Platform: before 2.1.

Executive Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Executive Summary Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Technical Details

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Detailed Technical Analysis Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Mitigations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Remediation & Mitigations Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

References

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Intelligence References Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Additional Metadata

{
  "score": "4.9",
  "pubDate": "2026-10-02T09:16:44.967Z",
  "pubdate": "2026-10-02T09:16:44.967Z",
  "executiveSummary": "The HAVELSAN Sef - AI Chatbot Platform contains a Server-Side Request Forgery (SSRF) vulnerability due to improper input validation in its request-handling mechanisms.\nThis vulnerability allows an unauthenticated or authenticated attacker to force the application server to initiate unauthorized outbound HTTP requests to arbitrary targets, including internal infrastructure components or external services.\nThe primary risk implications involve the potential for bypassing firewall protections, reconnaissance of internal network topologies, and the exfiltration of sensitive metadata or internal data exposed via local service endpoints.\nThe vulnerability affects Sef - AI Chatbot Platform versions prior to 2.1.\nSuccessful exploitation allows attackers to leverage the server's identity to interact with internal network resources that are otherwise inaccessible from the public internet.",
  "technicalDetails": "The vulnerability resides within the request-processing logic of the Sef - AI Chatbot Platform, which fails to adequately sanitize user-provided URLs or resource identifiers before performing back-end fetch operations. This constitutes a classic SSRF condition where the server acts as an inadvertent proxy for malicious payloads.\nThe root cause is the lack of a robust allowlist or validation schema for destination hosts, protocols, and ports when the platform attempts to process external inputs. By supplying a crafted URI, an attacker can manipulate the internal request factory to target non-publicly routable IP addresses, such as 127.0.0.1 or internal RFC 1918 addresses within the hosting infrastructure.\nThe attack flow typically initiates when an attacker submits a specially crafted request to an endpoint that handles resource fetching or chatbot data integration. Upon receiving the input, the application server attempts to perform a GET or POST request to the specified destination. If the application does not validate the protocol (e.g., restricting to HTTP/HTTPS) or the destination domain/IP, the request is executed with the privileges and network context of the Sef platform service account.\nAn attacker can exploit this to perform internal port scanning, identify active services within the service mesh, or exploit vulnerable local services that rely on IP-based trust models. Furthermore, if the server is hosted in cloud environments (e.g., AWS, GCP, Azure), this SSRF could be utilized to query local metadata services (e.g., 169.254.169.254) to extract IAM credentials, API keys, or machine-specific tokens.\nThe vulnerability affects all versions of the HAVELSAN Sef - AI Chatbot Platform prior to 2.1. Given that these platforms often reside within secure perimeters, the impact of successful exploitation includes significant lateral movement capabilities, as the platform often possesses inherent permissions to communicate with internal database clusters, microservices, or caching layers like Redis or Memcached which might not require further authentication internally.\nPost-exploitation impact may include the exposure of sensitive platform configurations, unauthorized modification of backend data, or the redirection of chatbot traffic to malicious command-and-control servers, effectively compromising the integrity and confidentiality of the AI platform's data ecosystem."
}
CVE-2026-80464: SSRF in HAVELSAN Sef Platform (MEDIUM Severity, CVSS: 4.9) | Sceawere