Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-4438 | A vulnerability, which was classified as problematic, was found in OFCMS 1.1.3. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. |
Wed, 04 Jun 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ofcms Project
Ofcms Project ofcms |
|
| CPEs | cpe:2.3:a:ofcms_project:ofcms:1.1.3:*:*:*:*:*:*:* | |
| Vendors & Products |
Ofcms Project
Ofcms Project ofcms |
Mon, 24 Feb 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 22 Feb 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as problematic, was found in OFCMS 1.1.3. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | OFCMS cross-site request forgery | |
| Weaknesses | CWE-352 CWE-862 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-02-24T12:49:36.709Z
Reserved: 2025-02-21T15:16:54.376Z
Link: CVE-2025-1557
Updated: 2025-02-24T12:49:33.589Z
Status : Analyzed
Published: 2025-02-22T13:15:12.247
Modified: 2025-06-04T19:14:47.153
Link: CVE-2025-1557
No data.
OpenCVE Enrichment
No data.
EUVD