Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 27 May 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Timgreen
Timgreen dingfanzu Cms |
|
| CPEs | cpe:2.3:a:timgreen:dingfanzu_cms:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Timgreen
Timgreen dingfanzu Cms |
Thu, 17 Oct 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dingfanzu
Dingfanzu cms |
|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:dingfanzu:cms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Dingfanzu
Dingfanzu cms |
|
| Metrics |
cvssV3_1
|
Wed, 16 Oct 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the addPro parameter of the component doAdminAction.php which allows a remote attacker to execute arbitrary code | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-17T16:44:16.482Z
Reserved: 2024-10-08T00:00:00.000Z
Link: CVE-2024-48758
Updated: 2024-10-17T16:44:10.925Z
Status : Analyzed
Published: 2024-10-16T21:15:13.557
Modified: 2025-05-27T19:44:07.077
Link: CVE-2024-48758
No data.
OpenCVE Enrichment
No data.