CVE-2024-39023: CSRF
Published Jul 5, 2024
·Updated
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via admin/infodeal.php?mudi=add&nohrefStr=close
Affected Software
2 affected components
Sebrac Sebraccms
Sebrac Sebraccms=1.35
Event History
Jul 5, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-39023?
CVE-2024-39023 is classified as a Cross-Site Request Forgery (CSRF) vulnerability which can compromise the security of the application.
2
How do I fix CVE-2024-39023?
To fix CVE-2024-39023, implement proper CSRF protection mechanisms such as CSRF tokens in forms.
3
What specific areas of Idccms are affected by CVE-2024-39023?
CVE-2024-39023 affects the admin/info_deal.php endpoint in Idccms version 1.35.
4
Is CVE-2024-39023 exploitable remotely?
Yes, CVE-2024-39023 can be exploited remotely if an attacker tricks a logged-in user into making an unwanted request.
5
Are there any known exploits for CVE-2024-39023?
As of now, there are no public exploit scripts specifically targeting CVE-2024-39023.