Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-51976 | JFinal CMS 5.1.0 is vulnerable to Command Execution via unauthorized execution of deserialization in the file ApiForm.java |
Tue, 25 Nov 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jflyfox
Jflyfox jfinal Cms |
|
| CPEs | cpe:2.3:a:jflyfox:jfinal_cms:5.1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Jflyfox
Jflyfox jfinal Cms |
Wed, 11 Dec 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-502 | |
| Metrics |
cvssV3_1
|
Mon, 02 Dec 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | JFinal CMS 5.1.0 is vulnerable to Command Execution via unauthorized execution of deserialization in the file ApiForm.java | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-12-11T16:00:18.279Z
Reserved: 2024-11-20T00:00:00.000Z
Link: CVE-2024-53477
Updated: 2024-12-11T16:00:12.151Z
Status : Analyzed
Published: 2024-12-02T21:15:11.217
Modified: 2025-11-25T13:44:33.287
Link: CVE-2024-53477
No data.
OpenCVE Enrichment
No data.
EUVD