Description
URL spoofing vulnerability exists in a-blog cms Ver.3.1.0 to Ver.3.1.8. If an attacker sends a specially crafted request, the administrator of the product may be forced to access an arbitrary website when clicking a link in the audit log.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Tue, 13 May 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Appleple
Appleple a-blog Cms |
|
| CPEs | cpe:2.3:a:appleple:a-blog_cms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Appleple
Appleple a-blog Cms |
Fri, 01 Nov 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-601 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-11-01T20:52:44.326Z
Reserved: 2024-02-08T01:35:27.596Z
Link: CVE-2024-25559
Updated: 2024-08-01T23:44:09.680Z
Status : Analyzed
Published: 2024-02-15T05:15:10.870
Modified: 2025-05-13T15:12:52.413
Link: CVE-2024-25559
No data.
OpenCVE Enrichment
No data.
Weaknesses