Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41068 | eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrary code via the DatabaseController.java component. |
Mon, 31 Mar 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 25 Sep 2024 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:eladmin:eladmin:*:*:*:*:*:*:*:* |
Tue, 10 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Eladmin
Eladmin eladmin |
|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:eladmin:eladmin:2.7:*:*:*:*:*:*:* | |
| Vendors & Products |
Eladmin
Eladmin eladmin |
|
| Metrics |
cvssV3_1
|
Tue, 10 Sep 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 10 Sep 2024 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrary code via the DatabaseController.java component. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-08T20:41:52.023Z
Reserved: 2024-08-21T00:00:00.000Z
Link: CVE-2024-44677
Updated: 2024-09-10T18:18:12.932Z
Status : Modified
Published: 2024-09-10T16:15:20.373
Modified: 2025-03-31T16:15:22.023
Link: CVE-2024-44677
No data.
OpenCVE Enrichment
No data.
EUVD