CVE-2024-34958: CSRF
Published May 16, 2024
·Updated
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/bannerdeal.php?mudi=add
Affected Software
2 affected components
Sebrac Sebraccms
Sebrac Sebraccms=1.35
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 16, 2024
CVE Published
via NVD·03:15 PM
Aug 2, 2024
Data Sourced
via MITRE·03:10 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-34958?
CVE-2024-34958 has not been officially assigned a severity score yet, but it poses a significant risk due to its nature as a Cross-Site Request Forgery vulnerability.
2
How do I fix CVE-2024-34958?
To fix CVE-2024-34958, implement anti-CSRF tokens in forms and verify the origin of requests to prevent unauthorized actions.
3
What systems are affected by CVE-2024-34958?
CVE-2024-34958 affects idccms version 1.35 specifically.
4
What type of vulnerability is CVE-2024-34958?
CVE-2024-34958 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
What component is involved in CVE-2024-34958?
CVE-2024-34958 involves the admin/banner_deal.php?mudi=add component of idccms.