216.73.217.172

CVE-2024-13139

· Published 05/01/2025 11:15 · Modified 10/01/2025 21:02

Labels: CVE-2024-13139 2025-01-05CVE-2024-13139CWE-918[email protected]

Essential information

Published
05/01/2025 11:15
Modified
10/01/2025 21:02
Author
Creator
CVSS
5.3 MEDIUM (v3) 5.3 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability was found in wangl1989 mysiteforme 1.0. It has been rated as critical. This issue affects the function doContent of the file src/main/java/com/mysiteform/admin/controller/system/FileController. The manipulation of the argument content leads to server-side request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
wangl1989 / mysiteforme cpe:2.3:a:wangl1989:mysiteforme:1.0:*:*:*:*:*:*:*

References