CVE-2024-57523

Cross Site Request Forgery (CSRF) in Users.php in SourceCodester Packers and Movers Management System 1.0 allows attackers to create unauthorized admin accounts via crafted requests sent to an authenticated admin user.
References
Link Resource
http://sourcecodester.com Product
https://github.com/HackWidMaddy/CVE-2024-57523. Exploit Third Party Advisory
https://github.com/HackWidMaddy/CVE-2024-57523. Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:oretnom23:packers_and_movers_management_system:1.0:*:*:*:*:*:*:*

History

22 Apr 2025, 20:06

Type Values Removed Values Added
Summary
  • (es) Cross Site Request Forgery (CSRF) en Users.php en SourceCodester Packers and Movers Management System 1.0 permite a los atacantes crear cuentas de administrador no autorizadas a través de solicitudes manipuladas enviadas a un usuario administrador autenticado.
First Time Oretnom23 packers And Movers Management System
Oretnom23
CPE cpe:2.3:a:oretnom23:packers_and_movers_management_system:1.0:*:*:*:*:*:*:*
References () http://sourcecodester.com - () http://sourcecodester.com - Product
References () https://github.com/HackWidMaddy/CVE-2024-57523. - () https://github.com/HackWidMaddy/CVE-2024-57523. - Exploit, Third Party Advisory

06 Feb 2025, 20:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.5
CWE CWE-352
References () https://github.com/HackWidMaddy/CVE-2024-57523. - () https://github.com/HackWidMaddy/CVE-2024-57523. -

06 Feb 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-06 19:15

Updated : 2025-04-22 20:06


NVD link : CVE-2024-57523

Mitre link : CVE-2024-57523

CVE.ORG link : CVE-2024-57523


JSON object : View

Products Affected

oretnom23

  • packers_and_movers_management_system
CWE
CWE-352

Cross-Site Request Forgery (CSRF)