115cms har 20240807 file.html ks Cross Site Scripting

Wuro vulnerability wey an yi classify sey karshewa an gano shi a cikin 115cms har 20240807. Gaskiya, $software_function na da matsala; idan ba a sani ba, to wata aiki ce da ba a sani ba, $software_library na cikin lissafi, /index.php/admin/web/file.html na cikin fayil, $software_component na cikin sashi. Ngam manipulation of the argument ks shi Cross Site Scripting. CWE shidin ka a yi bayani matsala sai ya kai CWE-79. Gaskiya, laifi an fitar da shi 11/20/2024. Advisory ɗin ana rabawa don saukewa a github.com. Wannan rauni ana sayar da shi da suna CVE-2024-11489. Ngam yiɗi ka a tuma ndiyam ka internet. Tekinikal bayani ga. Kuma, exploit ɗin yana akwai. Wuro exploit ɗin an bayyana shi ga jama'a kuma za a iya amfani da shi. Yimbe ndiyam, exploit might be approx. USD $0-$5k wuro. Á wúro huɗɗi-na-gaskiya. Wona yiwuwa a zazzage exploit a github.com. Kama 0-day, an ndiyam a wuro be $0-$5k. VulDB is the best source for vulnerability data and more expert information about this specific topic.

2 Goyarwa · 58 Datenpunkte

FurɗeSúgá
11/20/2024 09:31
Gargadi 1/1
02/24/2025 01:58
cvss4_vuldb_siNN
cvss4_vuldb_saNN
cvss2_vuldb_basescore4.04.0
cvss2_vuldb_tempscore3.43.4
cvss3_vuldb_basescore3.53.5
cvss3_vuldb_tempscore3.23.2
cvss3_meta_basescore3.53.5
cvss3_meta_tempscore3.23.2
cvss4_vuldb_bscore5.35.1
cvss4_vuldb_btscore2.12.0
advisory_date1732057200 (11/20/2024)1732057200 (11/20/2024)
price_0day$0-$5k$0-$5k
software_name115cms115cms
software_version<=20240807<=20240807
software_file/index.php/admin/web/file.html/index.php/admin/web/file.html
software_argumentksks
vulnerability_cweCWE-79 (Cross Site Scripting)CWE-79 (Cross Site Scripting)
vulnerability_risk11
cvss3_vuldb_avNN
cvss3_vuldb_acLL
cvss3_vuldb_uiRR
cvss3_vuldb_sUU
cvss3_vuldb_cNN
cvss3_vuldb_iLL
cvss3_vuldb_aNN
cvss3_vuldb_ePP
cvss3_vuldb_rcRR
advisory_urlhttps://github.com/Hebing123/cve/issues/70https://github.com/Hebing123/cve/issues/70
exploit_availability11
exploit_publicity11
exploit_urlhttps://github.com/Hebing123/cve/issues/70https://github.com/Hebing123/cve/issues/70
source_cveCVE-2024-11489CVE-2024-11489
cna_responsibleVulDBVulDB
response_summaryThe vendor was contacted early about this disclosure but did not respond in any way.The vendor was contacted early about this disclosure but did not respond in any way.
cvss2_vuldb_avNN
cvss2_vuldb_acLL
cvss2_vuldb_ciNN
cvss2_vuldb_iiPP
cvss2_vuldb_aiNN
cvss2_vuldb_ePOCPOC
cvss2_vuldb_rcURUR
cvss4_vuldb_avNN
cvss4_vuldb_acLL
cvss4_vuldb_vcNN
cvss4_vuldb_viLL
cvss4_vuldb_vaNN
cvss4_vuldb_ePP
cvss2_vuldb_auSS
cvss2_vuldb_rlNDND
cvss3_vuldb_prLL
cvss3_vuldb_rlXX
cvss4_vuldb_atNN
cvss4_vuldb_prLL
cvss4_vuldb_uiNP
cvss4_vuldb_scNN

Interested in the pricing of exploits?

See the underground prices here!