Metrics
Affected Vendors & Products
Thu, 19 Sep 2024 02:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Heyewei
Heyewei jfinalcms |
|
CPEs | cpe:2.3:a:heyewei:jfinalcms:*:*:*:*:*:*:*:* | |
Vendors & Products |
Heyewei
Heyewei jfinalcms |
Fri, 13 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Jfinalcms Project
Jfinalcms Project jfinalcms |
|
CPEs | cpe:2.3:a:jfinalcms_project:jfinalcms:*:*:*:*:*:*:*:* | |
Vendors & Products |
Jfinalcms Project
Jfinalcms Project jfinalcms |
|
Metrics |
ssvc
|
Fri, 13 Sep 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in JFinalCMS up to 1.0. It has been rated as critical. This issue affects the function delete of the file /admin/template/edit. The manipulation of the argument name leads to path traversal. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | JFinalCMS edit delete path traversal | |
Weaknesses | CWE-22 | |
References |
| |
Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-09-13T18:00:09.004Z
Updated: 2024-09-13T18:38:13.694Z
Reserved: 2024-09-13T12:43:01.493Z
Link: CVE-2024-8782
Updated: 2024-09-13T18:37:55.414Z
Status : Analyzed
Published: 2024-09-13T18:15:07.920
Modified: 2024-09-19T01:46:07.003
Link: CVE-2024-8782
No data.