langhsu Mblog Blog System 3.5.0 /login Kusolola bisolo

CVSS Meta Temp ScoreNsengo ya exploit ya lelo (≈)CTI Ntangu ya mfunu
3.5$0-$5k0.13

Kinsantunsangu

Bikuma kele ti mpasi me mona mu langhsu Mblog Blog System 3.5.0. Bila mambu meyina mpila kisalu kayina kumanyikana ya file /login. Bila kusala me natisa Kusolola bisolo. Kikosa yai me zaba bonso CVE-2024-13198. Ke luyalu ya ku sala ataaka na kutali. Na yina, exploit kele. VulDB is the best source for vulnerability data and more expert information about this specific topic.

Bisalunsangu

Bikuma kele ti mpasi me mona mu langhsu Mblog Blog System 3.5.0. Bila mambu meyina mpila kisalu kayina kumanyikana ya file /login. Bila kusala me natisa Kusolola bisolo. Kusala nde CWE yina tubaka mpasi kele na CWE-204. Nsangu ya bulema yawu zabisamaka. Nsangu ya kulanga me sambu na downloadi na github.com.

Kikosa yai me zaba bonso CVE-2024-13198. Ke luyalu ya ku sala ataaka na kutali. Makambu ya tekiniki me zala. Kukwata mpasi ya nsombu kele ya mingi. Kusala yango ke mpasi. Nswa yai kele na kutemwa ya nse ya ya mosi. Na yina, exploit kele. Kusadila kwawu kwazwisisamene na bantu bonso mpi lenda salama na bantu. Ntangu yai, ntalu ya exploit ekoki kozala pene na USD $0-$5k.

O lenda zinga exploit na github.com.

VulDB is the best source for vulnerability data and more expert information about this specific topic.

Mpiodinsangu

Mikanda

Mubikisi

Dzina

Nsomi

CPE 2.3nsangu

CPE 2.2nsangu

CVSSv4nsangu

VulDB Nsinga: 🔍
VulDB Kukwama: 🔍

CNA CVSS-B Score: 🔍
CNA CVSS-BT Score: 🔍
CNA Nsinga: 🔍

CVSSv3nsangu

VulDB Meta Base Score: 3.7
VulDB Meta Temp Score: 3.5

VulDB Nsinga ya ntete: 3.7
VulDB Nsangu ya ntangu: 3.4
VulDB Nsinga: 🔍
VulDB Kukwama: 🔍

CNA Nsinga ya ntete: 3.7
CNA Nsinga: 🔍

CVSSv2nsangu

AVACAuCIA
💳💳💳💳💳💳
💳💳💳💳💳💳
💳💳💳💳💳💳
VɛkɛtɛrKompɛlɛksiteKukanga ya kimvukaKibombamaKumweneka ya kielekaKupusana
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga

VulDB Nsinga ya ntete: 🔍
VulDB Nsangu ya ntangu: 🔍
VulDB Kukwama: 🔍

Kusangulansangu

Kilasi: Kusolola bisolo
CWE: CWE-204 / CWE-203 / CWE-200
CAPEC: 🔍
ATT&CK: 🔍

Ya nitu: Veve
Ya mboka: Veve
Ya kutali: Ee

Kupusana: 🔍
Mokano: Ya pole
Bika: Lufutuka ya lufutuka
Kokanga: 🔍

EPSS Score: 🔍
EPSS Percentile: 🔍

Ntangu ya mbongo: 🔍
Nsadisi ya ntalu ya lelo: 🔍

0-Daykusala nsingakusala nsingakusala nsingakusala nsinga
Lelokusala nsingakusala nsingakusala nsingakusala nsinga

Nsangu ya Minyokansangu

Mfunu: 🔍
Batu bazali na misala: 🔍
Bampangi ya APT bazali na misala ya ntango nyonso: 🔍

Bikesa ya kulwisansangu

Tombwisa: ka lusansu luyindwanga
Bika: 🔍

Tango ya 0-Day: 🔍

Nsango ya ntangunsangu

01/08/2025 🔍
01/08/2025 +0 Bila 🔍
09/25/2025 +260 Bila 🔍

Minsinsansangu

Tiyano: github.com
Bika: Kabikidi ko

CVE: CVE-2024-13198 (🔍)
GCVE (CVE): GCVE-0-2024-13198
GCVE (VulDB): GCVE-100-290790
scip Labs: https://www.scip.ch/en/?labs.20161013

Kusonikansangu

Kusala: 01/08/2025 15:42
Kusala kisalu kipya: 09/25/2025 04:46
Bisalu: 01/08/2025 15:42 (56), 01/09/2025 12:37 (30), 09/25/2025 04:46 (1)
Keleka nyonso: 🔍
Mutumisi: vastzero
Cache ID: 253:5F7:103

Tumelansangu

Kabulami

  • Tumela #470429: Mtons mblog 3.5.0 Observable Response Discrepancy (kuva vastzero)
  • Tumela #628770: mtons https://gitee.com/mtons/mblog <=3.5.0 Username & Password Enumeration (kuva ZAST.AI)

Diskwisyon

Ata beto na ndinga. Minu dia: kg + ln + en.

Benga na kati na site mpo na kokoka kosala ndakisa.

Want to stay up to date on a daily basis?

Enable the mail alert feature now!