A vulnerability classified as problematic has been found in Benner ModernaNet up to 1.2.0. Affected is an unknown function of the file /DadosPessoais/SG_Gravar. The manipulation of the argument idItAg leads to cross-site request forgery. It is possible to launch the attack remotely. Upgrading to version 1.2.1 is able to address this issue. It is recommended to upgrade the affected component.
References
| Link | Resource |
|---|---|
| https://github.com/yago3008/cves | Third Party Advisory |
| https://vuldb.com/?ctiid.296694 | Permissions Required VDB Entry |
| https://vuldb.com/?id.296694 | Permissions Required VDB Entry |
| https://vuldb.com/?submit.500575 | VDB Entry Third Party Advisory Exploit |
Configurations
History
28 Feb 2025, 01:55
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:modernasistemas:modernanet:*:*:*:*:*:*:*:* | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
| First Time |
Modernasistemas modernanet
Modernasistemas |
|
| References | () https://vuldb.com/?id.296694 - Permissions Required, VDB Entry | |
| References | () https://vuldb.com/?ctiid.296694 - Permissions Required, VDB Entry | |
| References | () https://github.com/yago3008/cves - Third Party Advisory | |
| References | () https://vuldb.com/?submit.500575 - VDB Entry, Third Party Advisory, Exploit |
25 Feb 2025, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-02-25 02:15
Updated : 2025-02-28 01:55
NVD link : CVE-2025-1644
Mitre link : CVE-2025-1644
JSON object : View
Products Affected
modernasistemas
- modernanet
