CVE-2024-57548: Critical severity simplog vulnerability
Published Jan 27, 2025
·Updated
CMSimple 5.16 allows the user to edit log.php file via print page.
Affected Software
1 affected component
CmSimple CMSimple
Event History
Jan 27, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-57548?
CVE-2024-57548 is classified as a high severity vulnerability due to the potential for sensitive log file manipulation.
2
How do I fix CVE-2024-57548?
To fix CVE-2024-57548, restrict user permissions to prevent unauthorized access to the log.php file.
3
What kind of attack can exploit CVE-2024-57548?
CVE-2024-57548 can be exploited through privilege escalation, allowing attackers to modify log files.
4
Which software is affected by CVE-2024-57548?
CVE-2024-57548 affects CMSimple version 5.16.
5
Is there a patch available for CVE-2024-57548?
As of now, there is no official patch available for CVE-2024-57548, but users should implement access controls as a workaround.