CVE-2024-36550: CSRF
Published Jun 4, 2024
·Updated
idccms V1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/vpsCompanydeal.php?mudi=add&nohrefStr=close
Affected Software
1 affected component
Sebrac Sebraccms=1.35
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
Jun 4, 2024
CVE Published
via NVD·03:15 PM
Aug 21, 2024
Data Sourced
via MITRE·03:29 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-36550?
CVE-2024-36550 is classified as a medium severity vulnerability related to Cross-Site Request Forgery (CSRF).
2
How do I fix CVE-2024-36550?
To fix CVE-2024-36550, implement anti-CSRF tokens in the affected endpoints to prevent unauthorized actions.
3
Who is affected by CVE-2024-36550?
CVE-2024-36550 affects users of Idccms version 1.35.
4
What type of vulnerability is CVE-2024-36550?
CVE-2024-36550 is identified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
What are the consequences of CVE-2024-36550?
Exploitation of CVE-2024-36550 could allow attackers to perform actions on behalf of authenticated users without their consent.