CVE-2024-11673
1000 Projects Bookstore Management System cross-site request forgery
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A vulnerability, which was classified as problematic, has been found in 1000 Projects Bookstore Management System 1.0. This issue affects some unknown processing. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Se ha encontrado una vulnerabilidad clasificada como problemática en 1000 Projects Bookstore Management System 1.0. Este problema afecta a algunos procesos desconocidos. La manipulación conduce a cross-site request forgery. El ataque puede iniciarse de forma remota. El exploit se ha hecho público y puede utilizarse.
Eine Schwachstelle wurde in 1000 Projects Bookstore Management System 1.0 entdeckt. Sie wurde als problematisch eingestuft. Betroffen davon ist ein unbekannter Prozess. Mit der Manipulation mit unbekannten Daten kann eine cross-site request forgery-Schwachstelle ausgenutzt werden. Die Umsetzung des Angriffs kann dabei über das Netzwerk erfolgen. Der Exploit steht zur öffentlichen Verfügung.
CVSS Scores
SSVC
- Decision:Track*
Timeline
- 2024-11-25 CVE Reserved
- 2024-11-25 CVE Published
- 2024-11-26 CVE Updated
- 2024-11-26 EPSS Updated
- 2024-11-26 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-352: Cross-Site Request Forgery (CSRF)
- CWE-862: Missing Authorization
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://1000projects.org | Product | |
https://vuldb.com/?id.286013 | Vdb Entry | |
https://vuldb.com/?submit.448470 | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://github.com/Hacker0xone/CVE/issues/16 | 2024-11-26 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
1000 Projects Search vendor "1000 Projects" | Bookstore Management System Search vendor "1000 Projects" for product "Bookstore Management System" | 1.0 Search vendor "1000 Projects" for product "Bookstore Management System" and version "1.0" | en |
Affected
|