Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-49448 | A vulnerability classified as critical was found in vedees wcms up to 0.3.2. Affected by this vulnerability is an unknown functionality of the file /wex/finder.php. The manipulation of the argument p leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 17 Sep 2024 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wcms
Wcms wcms |
|
| CPEs | cpe:2.3:a:wcms:wcms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Wcms
Wcms wcms |
|
| Metrics |
ssvc
|
Sun, 15 Sep 2024 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical was found in vedees wcms up to 0.3.2. Affected by this vulnerability is an unknown functionality of the file /wex/finder.php. The manipulation of the argument p leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | vedees wcms finder.php path traversal | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-09-16T18:10:33.173Z
Reserved: 2024-09-15T05:22:35.864Z
Link: CVE-2024-8875
Updated: 2024-09-16T18:10:27.400Z
Status : Analyzed
Published: 2024-09-15T22:15:09.887
Modified: 2024-09-20T22:44:16.077
Link: CVE-2024-8875
No data.
OpenCVE Enrichment
No data.
EUVD