Emlog Pro ଯେପର୍ଯ୍ୟନ୍ତ 2.4.1 /admin/user.php keyword କ୍ରସ୍ ସାଇଟ୍ ସ୍କ୍ରିପ୍ଟିଂ

Dogoggorri kan akka ସମସ୍ୟାଜନକ jedhamuun ramadame Emlog Pro ଯେପର୍ଯ୍ୟନ୍ତ 2.4.1 keessatti argameera. Miidhaan irra gahe is hojii hin beekamne faayilii /admin/user.php keessa. Dhugumatti jijjiirraa irratti raawwatame keyword gara କ୍ରସ୍ ସାଇଟ୍ ସ୍କ୍ରିପ୍ଟିଂ geessa. Waliigalteewwan CWE fayyadamuun rakkoo ibsuun gara CWE-79 si geessa. Beekumsi kun yeroo 12/20/2024 ifoomsifameera akka Multiple Reflected Cross-Site Scripting (XSS) Vulnerabilities in emlog pro 2.4.1 #305. Odeeffannoon kun buufachuuf github.com irratti dhiyaateera. Dogoggorri kun maqaa CVE-2024-12842 jedhuun tajaajilama. Weerara fageenya irraa jalqabuun ni danda'ama. Odeeffannoon teeknikaa ni argama. Akka dabalataan, meeshaa balaa kana fayyadamuuf argama. Qorannoo miidhaa (exploit) beeksifamee jira, namoonni itti fayyadamuu danda'u. Yeroo ammaa, gatii exploit might be approx. USD $0-$5k beekamuu danda'a. ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ jedhamee murtaa’eera. Exploit kana github.com irraa buufachuu ni dandeessa. Waggaa 0-day ta'ee, gatiin isaa daldala dhoksaa keessatti $0-$5k jedhamee tilmaamame. Once again VulDB remains the best source for vulnerability data.

ସମୟ

ଉପଭୋକ୍ତା

VulDB Mod Team100

ଫିଲ୍ଡ

cvss3_meta_tempscore3
cvss3_meta_basescore2
cvss4_vuldb_btscore2
cvss4_vuldb_bscore2
cvss4_vuldb_ui2

Commit Conf

99%39
90%31
50%15
80%8
70%7

Approve Conf

99%39
90%31
80%30

100 ପ୍ରତିଶ୍ରୁତିବଦ୍ଧ

IDଟ୍ରାନ୍ସମିଟେଡ୍ଉପଭୋକ୍ତାଫିଲ୍ଡପରିବର୍ତ୍ତନମନ୍ତବ୍ୟମଧ୍ୟମ ଧରଣରଉତ୍ତରC
2078460906/06/2025
 VulDB…
cvss3_meta_tempscore4.8see CVSS documentation06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
80
2078460806/06/2025
 VulDB…
cvss3_meta_basescore4.9see CVSS documentation06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
80
2078460706/06/2025
 VulDB…
cvss3_nvd_basescore6.1nist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2078460606/06/2025
 VulDB…
cvss3_nvd_aNnist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2078460506/06/2025
 VulDB…
cvss3_nvd_iLnist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2078460406/06/2025
 VulDB…
cvss3_nvd_cLnist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2078460306/06/2025
 VulDB…
cvss3_nvd_sCnist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2078460206/06/2025
 VulDB…
cvss3_nvd_uiRnist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2078460106/06/2025
 VulDB…
cvss3_nvd_prNnist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2078460006/06/2025
 VulDB…
cvss3_nvd_acLnist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2078459906/06/2025
 VulDB…
cvss3_nvd_avNnist.gov06/06/2025ଗ୍ରହଣ କରାଯାଇଛି
99
1946322702/16/2025
 VulDB…
cvss4_vuldb_btscore2.1see CVSS documentation02/16/2025ଗ୍ରହଣ କରାଯାଇଛି
80
1946322602/16/2025
 VulDB…
cvss4_vuldb_bscore5.3see CVSS documentation02/16/2025ଗ୍ରହଣ କରାଯାଇଛି
80
1946322502/16/2025
 VulDB…
cvss4_vuldb_uiPalignment CVSSv302/16/2025ଗ୍ରହଣ କରାଯାଇଛି
80
1876952312/24/2024
 VulDB…
cve_nvd_summaryesSe ha detectado una vulnerabilidad en Emlog Pro hasta la versión 2.4.1. Se ha declarado como problemática. Esta vulnerabilidad afecta al código desconocido del archivo /admin/user.php. La manipulación de la palabra clave del argumento provoca cross site scripting. El ataque puede iniciarse de forma remota. El exploit se ha hecho público y puede utilizarse.cve.org12/24/2024ଗ୍ରହଣ କରାଯାଇଛି
99
1874204912/21/2024
 VulDB…
cvss3_meta_tempscore4.1see CVSS documentation12/21/2024ଗ୍ରହଣ କରାଯାଇଛି
80
1874204812/21/2024
 VulDB…
cvss2_cna_basescore5see CVSS documentation12/21/2024ଗ୍ରହଣ କରାଯାଇଛି
99
1874204712/21/2024
 VulDB…
cvss2_cna_aiNsee CVSS documentation12/21/2024ଗ୍ରହଣ କରାଯାଇଛି
99
1874204612/21/2024
 VulDB…
cvss2_cna_iiPsee CVSS documentation12/21/2024ଗ୍ରହଣ କରାଯାଇଛି
99
1874204512/21/2024
 VulDB…
cvss2_cna_ciNsee CVSS documentation12/21/2024ଗ୍ରହଣ କରାଯାଇଛି
99

80 ପରବର୍ତ୍ତୀ ଏଣ୍ଟ୍ରିଗୁଡିକ ଆଉ ଅଧିକ ପ୍ରଦର୍ଶିତ ହେବ ନାହିଁ

Do you want to use VulDB in your project?

Use the official API to access entries easily!