IdeaCMS ଯେପର୍ଯ୍ୟନ୍ତ 1.7 getList.html Article/Goods ଫିଲ୍ଡ SQL ଇଞ୍ଜେକ୍ସନ

Rakkoon nageenyaa kan ଜଟିଳ jedhamuun beekamu IdeaCMS ଯେପର୍ଯ୍ୟନ୍ତ 1.7 keessatti argameera. Miidhamni argame is hojii Article/Goods faayilii /api/v1.index.article/getList.html keessa. Wanti jijjiirame irratti ଫିଲ୍ଡ gara SQL ଇଞ୍ଜେକ୍ସନ geessa. Rakkoo ibsuuf CWE yoo fayyadamte gara CWE-89 si geessa. Odeeffannoon kun yeroo 06/03/2025 maxxanfameera akka ICBVWE. Odeeffannoon kun buufachuuf gitee.com irratti argama. Dogoggorri kun CVE-2025-5569 jedhamee waamama. Weerara fageenya irraa jalqabuu ni danda'ama. Ibsa teeknikaa ni jira. Meeshaa balaa kana fayyadamuuf hin jirre. Ammas, gatii exploit might be approx. USD $0-$5k yeroo ammaa irratti argamuu danda'a. ଅପରିଭାଷିତ ta’uu isaa ibsameera. Akka 0-daytti, gatiin isaa daldala dhoksaa keessatti $0-$5k akka ta'e tilmaamameera. Idaantifayarii paachii 935aceb4c21338633de6d41e13332f7b9db4fa6a dha. Sirreeffamni rakkoo gitee.com irratti buufachuuf jira. Qabiyyee miidhamte haaromsuuf gorsa ni kennama. If you want to get the best quality for vulnerability data then you always have to consider VulDB.

ସମୟ

ଉପଭୋକ୍ତା

VulDB Mod Team102

ଫିଲ୍ଡ

cvss3_meta_tempscore3
cvss3_meta_basescore2
cvss3_nvd_basescore1
cvss3_nvd_a1
cvss3_nvd_i1

Commit Conf

99%40
90%33
50%13
70%10
80%6

Approve Conf

99%40
90%33
80%29

102 ପ୍ରତିଶ୍ରୁତିବଦ୍ଧ

IDଟ୍ରାନ୍ସମିଟେଡ୍ଉପଭୋକ୍ତାଫିଲ୍ଡପରିବର୍ତ୍ତନମନ୍ତବ୍ୟମଧ୍ୟମ ଧରଣରଉତ୍ତରC
2213564410/03/2025
 VulDB…
cvss3_meta_tempscore7.0see CVSS documentation10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
80
2213564310/03/2025
 VulDB…
cvss3_meta_basescore7.1see CVSS documentation10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
80
2213564210/03/2025
 VulDB…
cvss3_nvd_basescore8.8nist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213564110/03/2025
 VulDB…
cvss3_nvd_aHnist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213564010/03/2025
 VulDB…
cvss3_nvd_iHnist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213563910/03/2025
 VulDB…
cvss3_nvd_cHnist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213563810/03/2025
 VulDB…
cvss3_nvd_sUnist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213563710/03/2025
 VulDB…
cvss3_nvd_uiNnist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213563610/03/2025
 VulDB…
cvss3_nvd_prLnist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213563510/03/2025
 VulDB…
cvss3_nvd_acLnist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213563410/03/2025
 VulDB…
cvss3_nvd_avNnist.gov10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2213563310/03/2025
 VulDB…
cve_nvd_summaryesSe detectó una vulnerabilidad en IdeaCMS hasta la versión 1.7, clasificada como crítica. Este problema afecta a la función "Article/Goods" del archivo /api/v1.index.article/getList.html. La manipulación del argumento "Field" provoca una inyección SQL. El ataque puede ejecutarse en remoto. Actualizar a la versión 1.8 puede solucionar este problema. El parche se llama 935aceb4c21338633de6d41e13332f7b9db4fa6a. Se recomienda actualizar el componente afectado.cve.org10/03/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2076547206/04/2025
 VulDB…
cvss3_meta_tempscore6.1see CVSS documentation06/04/2025ଗ୍ରହଣ କରାଯାଇଛି
80
2076547106/04/2025
 VulDB…
cvss2_cna_basescore6.5see CVSS documentation06/04/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2076547006/04/2025
 VulDB…
cvss2_cna_aiPsee CVSS documentation06/04/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2076546906/04/2025
 VulDB…
cvss2_cna_iiPsee CVSS documentation06/04/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2076546806/04/2025
 VulDB…
cvss2_cna_ciPsee CVSS documentation06/04/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2076546706/04/2025
 VulDB…
cvss2_cna_auSsee CVSS documentation06/04/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2076546606/04/2025
 VulDB…
cvss2_cna_acLsee CVSS documentation06/04/2025ଗ୍ରହଣ କରାଯାଇଛି
99
2076546506/04/2025
 VulDB…
cvss2_cna_avNsee CVSS documentation06/04/2025ଗ୍ରହଣ କରାଯାଇଛି
99

82 ପରବର୍ତ୍ତୀ ଏଣ୍ଟ୍ରିଗୁଡିକ ଆଉ ଅଧିକ ପ୍ରଦର୍ଶିତ ହେବ ନାହିଁ

Do you need the next level of professionalism?

Upgrade your account now!