A vulnerability, which was classified as problematic, has been found in SourceCodester Food Ordering Management System 1.0. Affected by this issue is some unknown functionality of the file /includes/. The manipulation leads to exposure of information through directory listing. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
History

Fri, 13 Sep 2024 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Oretnom23
Oretnom23 food Ordering Management System
Weaknesses NVD-CWE-Other
CPEs cpe:2.3:a:oretnom23:food_ordering_management_system:1.0:*:*:*:*:*:*:*
Vendors & Products Oretnom23
Oretnom23 food Ordering Management System

Thu, 12 Sep 2024 13:30:00 +0000

Type Values Removed Values Added
First Time appeared Sourcecodester
Sourcecodester food Ordering Management System
CPEs cpe:2.3:a:sourcecodester:food_ordering_management_system:1.0:*:*:*:*:*:*:*
Vendors & Products Sourcecodester
Sourcecodester food Ordering Management System
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 12 Sep 2024 03:45:00 +0000

Type Values Removed Values Added
Description A vulnerability, which was classified as problematic, has been found in SourceCodester Food Ordering Management System 1.0. Affected by this issue is some unknown functionality of the file /includes/. The manipulation leads to exposure of information through directory listing. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Title SourceCodester Food Ordering Management System includes exposure of information through directory listing
Weaknesses CWE-548
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:N/A:N'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-09-12T03:31:04.967Z

Updated: 2024-09-12T13:04:22.723Z

Reserved: 2024-09-11T16:42:59.814Z

Link: CVE-2024-8711

cve-icon Vulnrichment

Updated: 2024-09-12T13:04:17.384Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-12T04:15:07.283

Modified: 2024-09-13T16:18:15.670

Link: CVE-2024-8711

cve-icon Redhat

No data.