A vulnerability classified as problematic was found in Spina CMS 2.18.0. Affected by this vulnerability is an unknown functionality of the file /admin/media_folders. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272431. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2440 | A vulnerability classified as problematic was found in Spina CMS 2.18.0. Affected by this vulnerability is an unknown functionality of the file /admin/media_folders. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272431. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. |
Github GHSA |
GHSA-wqw3-p83g-r24v | Cross-Site Request Forgery in Spina |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 13 Aug 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:denkgroot:spina:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-01T21:52:30.941Z
Reserved: 2024-07-25T12:44:06.245Z
Link: CVE-2024-7106
Updated: 2024-07-29T15:27:48.176Z
Status : Modified
Published: 2024-07-25T21:15:12.090
Modified: 2024-11-21T09:50:53.217
Link: CVE-2024-7106
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA