JFinalCMS ଯେପର୍ଯ୍ୟନ୍ତ 20240903 com.cms.util.TemplateUtils /admin/template/update fileName ଡିରେକ୍ଟୋରୀ ଟ୍ରାଭର୍ସାଲ
Rakkoon nageenyaa kan ଜଟିଳ jedhamuun beekamu JFinalCMS ଯେପର୍ଯ୍ୟନ୍ତ 20240903 keessatti argameera. Kan miidhamte is hojii update faayilii /admin/template/update keessa kutaa com.cms.util.TemplateUtils keessa. Hojii jijjiirraa irratti gaggeeffame fileName gara ଡିରେକ୍ଟୋରୀ ଟ୍ରାଭର୍ସାଲ geessa. CWE fayyadamuun rakkoo ibsuun gara CWE-22 geessa. Dadhabbii kana yeroo 09/11/2024 maxxanfameera akka IAOSJG. Odeeffannoon kun buufachuuf gitee.com irratti qoodameera.
Dogoggorri kun akka CVE-2024-8706tti beekama. Yaaliin weeraraa fageenya irraa jalqabamuu ni danda'a. Faayidaaleen teeknikaa ni jiru. Waliigalatti, meeshaa balaa kana fayyadamuuf jiru. Qorannoo miidhaa (exploit) uummataaf ifoomameera fi fayyadamamuu danda'a. Amma, gatii ammee exploit might be approx. USD $0-$5k ta'uu danda'a.
Akka ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ jedhamee ibsameera. Carraa exploit kana github.com irraa buufachuun ni danda'ama. Akka 0-daytti, gatii daldalaa dhoksaa tilmaamame $0-$5k ta'ee ture.
Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.
2 ଆଡାପ୍ଟେସନ୍ · 98 ପଏଣ୍ଟ