A vulnerability was found in Fanli2012 native-php-cms 1.0 and classified as critical. This issue affects some unknown processing of the file /fladmin/sysconfig_doedit.php of the component Backend. The manipulation leads to improper authorization. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
References
Link | Resource |
---|---|
https://github.com/Fanli2012/native-php-cms/issues/6 | Exploit Issue Tracking |
https://github.com/Fanli2012/native-php-cms/issues/6#issue-2769903928 | Exploit Issue Tracking |
https://vuldb.com/?ctiid.291929 | Permissions Required VDB Entry |
https://vuldb.com/?id.291929 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.475245 | Third Party Advisory VDB Entry |
Configurations
History
27 Feb 2025, 02:05
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-285 |
NVD-CWE-noinfo |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
CPE | cpe:2.3:a:fanli2012:native-php-cms:1.0:*:*:*:*:*:*:* | |
References | () https://vuldb.com/?ctiid.291929 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.291929 - Third Party Advisory, VDB Entry | |
References | () https://github.com/Fanli2012/native-php-cms/issues/6#issue-2769903928 - Exploit, Issue Tracking | |
References | () https://vuldb.com/?submit.475245 - Third Party Advisory, VDB Entry | |
References | () https://github.com/Fanli2012/native-php-cms/issues/6 - Exploit, Issue Tracking | |
First Time |
Fanli2012 native-php-cms
Fanli2012 |
15 Jan 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-15 20:15
Updated : 2025-02-27 02:05
NVD link : CVE-2025-0484
Mitre link : CVE-2025-0484
JSON object : View
Products Affected
fanli2012
- native-php-cms
CWE