Description
JFinal CMS 5.1.0 is vulnerable to Command Execution via unauthorized execution of deserialization in the file ApiForm.java
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-51976 | JFinal CMS 5.1.0 is vulnerable to Command Execution via unauthorized execution of deserialization in the file ApiForm.java |
References
History
Tue, 25 Nov 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jflyfox
Jflyfox jfinal Cms |
|
| CPEs | cpe:2.3:a:jflyfox:jfinal_cms:5.1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Jflyfox
Jflyfox jfinal Cms |
Wed, 11 Dec 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-502 | |
| Metrics |
cvssV3_1
|
Mon, 02 Dec 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | JFinal CMS 5.1.0 is vulnerable to Command Execution via unauthorized execution of deserialization in the file ApiForm.java | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-12-11T16:00:18.279Z
Reserved: 2024-11-20T00:00:00.000Z
Link: CVE-2024-53477
Updated: 2024-12-11T16:00:12.151Z
Status : Analyzed
Published: 2024-12-02T21:15:11.217
Modified: 2025-11-25T13:44:33.287
Link: CVE-2024-53477
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD