First published: Thu Jan 16 2025(Updated: )
07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via admin/doAdminAction.php?act=editShop&shopId.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
07FLYCMS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57611 is considered a security vulnerability that allows Cross-Site Request Forgery (CSRF) attacks.
To fix CVE-2024-57611, ensure that CSRF tokens are implemented and validated in all relevant requests to the server.
CVE-2024-57611 affects 07FLYCMS V1.3.9.
CVE-2024-57611 enables Cross-Site Request Forgery (CSRF) attacks which can lead to unauthorized actions being performed on behalf of an authenticated user.
Yes, CVE-2024-57611 could potentially compromise user authentication allowing attackers to perform actions on behalf of users.