CVE-2024-35551: CSRF
Published May 22, 2024
·Updated
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/infoWebdeal.php?mudi=add.
Affected Software
1 affected component
IDC CMS IDC CMS
Event History
May 22, 2024
CVE Published
via MITRE·01:38 PM
Data Sourced
via MITRE·01:38 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-35551?
CVE-2024-35551 is classified as a moderate-severity Cross-Site Request Forgery vulnerability.
2
How do I fix CVE-2024-35551?
To fix CVE-2024-35551, ensure that CSRF tokens are implemented in your forms to validate user requests.
3
What are the potential impacts of CVE-2024-35551?
The potential impacts of CVE-2024-35551 include unauthorized actions being performed on behalf of authenticated users.
4
In which software is CVE-2024-35551 found?
CVE-2024-35551 is found in idccms version 1.35.
5
How can I determine if I am affected by CVE-2024-35551?
To determine if you are affected by CVE-2024-35551, check if you are using idccms version 1.35 or earlier without proper CSRF protections.