Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-48738 | A vulnerability classified as critical has been found in Tosei Online Store Management System ネット店舗管理システム 4.02/4.03/4.04. This affects an unknown part of the file /cgi-bin/tosei_kikai.php. The manipulation of the argument kikaibangou leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 27 Sep 2024 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tosei-corporation
Tosei-corporation online Store Management System |
|
| CPEs | cpe:2.3:a:tosei:online_store_management_system:4.0.3:*:*:*:*:*:*:* cpe:2.3:a:tosei:online_store_management_system:4.0.4:*:*:*:*:*:*:* |
cpe:2.3:a:tosei-corporation:online_store_management_system:4.0.2:*:*:*:*:*:*:* cpe:2.3:a:tosei-corporation:online_store_management_system:4.0.3:*:*:*:*:*:*:* cpe:2.3:a:tosei-corporation:online_store_management_system:4.0.4:*:*:*:*:*:*:* |
| Vendors & Products |
Tosei-corporation
Tosei-corporation online Store Management System |
Fri, 27 Sep 2024 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:tosei:online_store_management_system:4.0.2:*:*:*:*:*:*:* cpe:2.3:a:tosei:online_store_management_system:4.0.3:*:*:*:*:*:*:* cpe:2.3:a:tosei:online_store_management_system:4.0.4:*:*:*:*:*:*:* |
Mon, 19 Aug 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tosei
Tosei online Store Management System |
|
| CPEs | cpe:2.3:a:tosei:online_store_management_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tosei
Tosei online Store Management System |
|
| Metrics |
ssvc
|
Sat, 17 Aug 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical has been found in Tosei Online Store Management System ネット店舗管理システム 4.02/4.03/4.04. This affects an unknown part of the file /cgi-bin/tosei_kikai.php. The manipulation of the argument kikaibangou leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Tosei Online Store Management System ネット店舗管理システム tosei_kikai.php command injection | |
| Weaknesses | CWE-77 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-19T16:55:05.770Z
Reserved: 2024-08-16T20:45:11.301Z
Link: CVE-2024-7897
Updated: 2024-08-19T16:54:19.256Z
Status : Modified
Published: 2024-08-17T15:15:11.597
Modified: 2024-11-21T09:52:19.657
Link: CVE-2024-7897
No data.
OpenCVE Enrichment
No data.
EUVD