CVE-2024-36547: CSRF
Published Jun 4, 2024
·Updated
idccms V1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/vpsClassdeal.php?mudi=add
Affected Software
1 affected component
Sebrac Sebraccms=1.35
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
Jun 4, 2024
CVE Published
via NVD·03:15 PM
Aug 19, 2024
Data Sourced
via MITRE·04:38 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-36547?
The severity of CVE-2024-36547 is classified as critical due to its Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2024-36547?
To fix CVE-2024-36547, ensure that CSRF protection mechanisms are properly implemented in the affected component.
3
What version of idccms is affected by CVE-2024-36547?
CVE-2024-36547 affects idccms version 1.35.
4
What component is vulnerable in CVE-2024-36547?
The vulnerable component in CVE-2024-36547 is admin/vpsClass_deal.php with the method mudi=add.
5
What type of vulnerability is CVE-2024-36547?
CVE-2024-36547 is a Cross-Site Request Forgery (CSRF) vulnerability.