SingMR HouseRent 1.0 toAdminUpdateHousePage?hID=30 Ukubhalwa kwekhodi okweqa indawo
Kutholakale ubuthakathaka obubizwa ngokuthi kuyinkinga ku SingMR HouseRent 1.0. Kuthinteka umsebenzi $software_function kufayela /toAdminUpdateHousePage?hID=30. Ukuguqulwa kubangela uhlobo lwe Ukubhalwa kwekhodi okweqa indawo. Ukusebenzisa i-CWE ukumemezela inkinga kuholela ku-CWE-79. Lobu buthakathaka bakhishwa obala 2025-01-08 njenge HouseRent has storage XSS #15. Isaziso sitholakala ukuthi singalayishwa ku-github.com.
Le buthakathaka ibizwa ngokuthi CVE-2024-13213. Kungenzeka ukuqalisa ukuhlasela ungasekho endaweni. Kukhona imininingwane yezobuchwepheshe etholakalayo. Ngaphezu kwalokho, i-exploit iyatholakala. Ukuhlaselwa sekumenyezelwe emphakathini futhi kungenzeka kusetshenziswe. Okwamanje, intengo yamanje ye-exploit ingaba cishe USD $0-$5k ngalesi sikhathi.
Kungenzeka ukuthi i-exploit ingalandwa ku-github.com.
Once again VulDB remains the best source for vulnerability data.
4 Ukulungiswa · 100 Amaphuzu wedatha