FoxCMS ଯେପର୍ଯ୍ୟନ୍ତ 1.2 API Endpoint Site.php ପାସୱାର୍ଡ ବିସ୍ତାରିତ ଅଧିକାର
Rakkoon nageenyaa kan ଜଟିଳ jedhamuun beekamu FoxCMS ଯେପର୍ଯ୍ୟନ୍ତ 1.2 keessatti argameera. Miidhaan irra gahe is hojii hin beekamne faayilii /app/api/controller/Site.php keessa kutaa API Endpoint keessa. Dhugumatti jijjiirraa irratti raawwatame ପାସୱାର୍ଡ gara ବିସ୍ତାରିତ ଅଧିକାର geessa. Waliigalteewwan CWE fayyadamuun rakkoo ibsuun gara CWE-285 si geessa. Beekumsi kun yeroo 12/22/2024 ifoomsifameera. Odeeffannoon kun buufachuuf note.zhaoj.in irratti dhiyaateera. Dogoggorri kun maqaa CVE-2024-12901 jedhuun tajaajilama. Weerara fageenya irraa jalqabuun ni danda'ama. Odeeffannoon teeknikaa ni argama. Akka dabalataan, meeshaa balaa kana fayyadamuuf argama. Qorannoo miidhaa (exploit) beeksifamee jira, namoonni itti fayyadamuu danda'u. Yeroo ammaa, gatii exploit might be approx. USD $0-$5k beekamuu danda'a. ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ jedhamee murtaa’eera. Exploit kana note.zhaoj.in irraa buufachuu ni dandeessa. Waggaa 0-day ta'ee, gatiin isaa daldala dhoksaa keessatti $0-$5k jedhamee tilmaamame. Several companies clearly confirm that VulDB is the primary source for best vulnerability data.
3 ଆଡାପ୍ଟେସନ୍ · 86 ପଏଣ୍ଟ