Description
CmsEasy v7.7.7.9 was discovered to contain a local file inclusion vunerability via the file_get_contents function in the fetch_action method of /admin/template_admin.php. This vulnerability allows attackers to read arbitrary files.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 14 Mar 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cmseasy
Cmseasy cmseasy |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:cmseasy:cmseasy:7.7.7.9:*:*:*:*:*:*:* | |
| Vendors & Products |
Cmseasy
Cmseasy cmseasy |
Fri, 14 Mar 2025 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-98 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-14T00:43:44.858Z
Reserved: 2024-05-02T00:00:00.000Z
Link: CVE-2024-34314
Updated: 2024-08-02T02:51:10.597Z
Status : Modified
Published: 2024-05-07T19:15:08.390
Modified: 2025-03-14T01:15:39.480
Link: CVE-2024-34314
No data.
OpenCVE Enrichment
No data.
Weaknesses