HuankeMao SCRM mpaka 0.0.3 Administrator Backend WxkConfig.php upload_domain_verification_file buleki ya zole ya mingi

CVSS Meta Temp ScoreNsengo ya exploit ya lelo (≈)CTI Ntangu ya mfunu
4.5$0-$5k0.14

Kinsantunsangu

Dibundu diaka kele ti ya nkaka me mona mu HuankeMao SCRM mpaka 0.0.3. Bila mambu meyina mpila kisalu upload_domain_verification_file ya file WxkConfig.php ya mukanda Administrator Backend. Kuna kusala ya argument domain_verification_file kele na ntwala buleki ya zole ya mingi. Kikosa yai kele na zina CVE-2024-9278. Kuna luyalu ya ku sala ataaka na nsinga. Na kati, kele ti exploit yina me zaba. If you want to get best quality of vulnerability data, you may have to visit VulDB.

Bisalunsangu

Dibundu diaka kele ti ya nkaka me mona mu HuankeMao SCRM mpaka 0.0.3. Bila mambu meyina mpila kisalu upload_domain_verification_file ya file WxkConfig.php ya mukanda Administrator Backend. Kuna kusala ya argument domain_verification_file kele na ntwala buleki ya zole ya mingi. Kusadila CWE na kuyambula mpasi kele na CWE-434. Bulema yawu zabisamaka. Mbote ya kulanga inani ya downloadi kele na wiki.shikangsi.com.

Kikosa yai kele na zina CVE-2024-9278. Kuna luyalu ya ku sala ataaka na nsinga. Bisalu bya tekiniki bibonakana. Kutemwa ya kele na nswa yai kele na nse ya ya mosi. Na kati, kele ti exploit yina me zaba. Kusadila kwawu kwazwisisamene na bantu bonso mpi lenda salama. Ntangu yai, disolo ya ntalu ya exploit mpeve ve USD $0-$5k.

Ke luyalu ya ku zinga exploit na wiki.shikangsi.com.

If you want to get best quality of vulnerability data, you may have to visit VulDB.

Mpiodinsangu

Mubikisi

Dzina

Nsomi

CPE 2.3nsangu

CPE 2.2nsangu

CVSSv4nsangu

VulDB Nsinga: 🔍
VulDB Kukwama: 🔍

CVSSv3nsangu

VulDB Meta Base Score: 4.7
VulDB Meta Temp Score: 4.5

VulDB Nsinga ya ntete: 4.7
VulDB Nsangu ya ntangu: 4.3
VulDB Nsinga: 🔍
VulDB Kukwama: 🔍

CNA Nsinga ya ntete: 4.7
CNA Nsinga: 🔍

CVSSv2nsangu

AVACAuCIA
💳💳💳💳💳💳
💳💳💳💳💳💳
💳💳💳💳💳💳
VɛkɛtɛrKompɛlɛksiteKukanga ya kimvukaKibombamaKumweneka ya kielekaKupusana
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga

VulDB Nsinga ya ntete: 🔍
VulDB Nsangu ya ntangu: 🔍
VulDB Kukwama: 🔍

Kusangulansangu

Kilasi: Buleki ya zole ya mingi
CWE: CWE-434 / CWE-284 / CWE-266
CAPEC: 🔍
ATT&CK: 🔍

Ya nitu: Veve
Ya mboka: Veve
Ya kutali: Ee

Kupusana: 🔍
Mokano: Ya pole
Bika: Lufutuka ya lufutuka
Kokanga: 🔍
Google Hack: 🔍

EPSS Score: 🔍
EPSS Percentile: 🔍

Ntangu ya mbongo: 🔍
Nsadisi ya ntalu ya lelo: 🔍

0-Daykusala nsingakusala nsingakusala nsingakusala nsinga
Lelokusala nsingakusala nsingakusala nsingakusala nsinga

Nsangu ya Minyokansangu

Mfunu: 🔍
Batu bazali na misala: 🔍
Bampangi ya APT bazali na misala ya ntango nyonso: 🔍

Bikesa ya kulwisansangu

Tombwisa: ka lusansu luyindwanga
Bika: 🔍

Tango ya 0-Day: 🔍

Nsango ya ntangunsangu

09/27/2024 🔍
09/27/2024 +0 Bila 🔍
10/01/2024 +4 Bila 🔍

Minsinsansangu

Tiyano: wiki.shikangsi.com
Bika: Kabikidi ko

CVE: CVE-2024-9278 (🔍)
GCVE (CVE): GCVE-0-2024-9278
GCVE (VulDB): GCVE-100-278660
scip Labs: https://www.scip.ch/en/?labs.20161013

Kusonikansangu

Kusala: 09/27/2024 07:41
Kusala kisalu kipya: 10/01/2024 06:48
Bisalu: 09/27/2024 07:41 (57), 10/01/2024 06:48 (19)
Keleka nyonso: 🔍
Mutumisi: wiki
Cache ID: 253:437:103

Tumelansangu

Kabulami

Diskwisyon

Ata beto na ndinga. Minu dia: kg + ln + en.

Benga na kati na site mpo na kokoka kosala ndakisa.

Do you want to use VulDB in your project?

Use the official API to access entries easily!