First published: Fri Nov 08 2024(Updated: )
07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component http://erp.07fly.net:80/oa/OaSchedule/add.html.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
07FLYCMS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-51157 is rated as a medium severity Cross-Site Request Forgery (CSRF) vulnerability.
To fix CVE-2024-51157, implement anti-CSRF tokens to validate requests.
CVE-2024-51157 affects the 07FLYCMS V1.3.9 application.
CVE-2024-51157 can be exploited by tricking authenticated users into submitting unauthorized requests.
Currently, there is no official patch available for CVE-2024-51157; mitigation through secure coding practices is recommended.