CVE-2024-42636

DedeCMS V5.7.115 has a command execution vulnerability via file_manage_view.php?fmdo=newfile&activepath.
References
Link Resource
https://github.com/iami233/cve/issues/1 Broken Link
Configurations

Configuration 1 (hide)

cpe:2.3:a:dedecms:dedecms:5.7.115:*:*:*:*:*:*:*

History

31 Mar 2025, 18:49

Type Values Removed Values Added
CPE cpe:2.3:a:dedecms:dedecms:5.7.115:*:*:*:*:*:*:*
Summary
  • (es) DedeCMS V5.7.115 tiene una vulnerabilidad de ejecución de comandos a través de file_manage_view.php?fmdo=newfile&activepath.
First Time Dedecms
Dedecms dedecms
References () https://github.com/iami233/cve/issues/1 - () https://github.com/iami233/cve/issues/1 - Broken Link

23 Aug 2024, 18:35

Type Values Removed Values Added
CWE CWE-77
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.2

23 Aug 2024, 16:18

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-23 16:15

Updated : 2025-03-31 18:49


NVD link : CVE-2024-42636

Mitre link : CVE-2024-42636

CVE.ORG link : CVE-2024-42636


JSON object : View

Products Affected

dedecms

  • dedecms
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')