Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17022 | A vulnerability classified as critical was found in Juanpao JPShop up to 1.5.02. This vulnerability affects the function actionIndex of the file /api/controllers/merchant/app/ComboController.php of the component API. The manipulation of the argument pic_url leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-253000. |
Thu, 08 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-05-08T18:52:24.825Z
Reserved: 2024-02-06T08:28:45.728Z
Link: CVE-2024-1261
Updated: 2024-08-01T18:33:25.511Z
Status : Modified
Published: 2024-02-06T22:16:14.693
Modified: 2024-11-21T08:50:11.030
Link: CVE-2024-1261
No data.
OpenCVE Enrichment
No data.
EUVD