CVE-2024-2823
- EPSS 0.04%
- Veröffentlicht 22.03.2024 17:15:09
- Zuletzt bearbeitet 15.01.2025 18:53:00
A vulnerability has been found in DedeCMS 5.7 and classified as problematic. This vulnerability affects unknown code of the file /src/dede/mda_main.php. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The e...
CVE-2024-2820
- EPSS 0.04%
- Veröffentlicht 22.03.2024 16:15:10
- Zuletzt bearbeitet 15.01.2025 18:53:10
A vulnerability classified as problematic was found in DedeCMS 5.7. Affected by this vulnerability is an unknown functionality of the file /src/dede/baidunews.php. The manipulation of the argument filename leads to cross-site request forgery. The att...
CVE-2024-2821
- EPSS 0.05%
- Veröffentlicht 22.03.2024 16:15:10
- Zuletzt bearbeitet 29.09.2025 22:01:21
A vulnerability, which was classified as problematic, has been found in DedeCMS 5.7. Affected by this issue is some unknown functionality of the file /src/dede/friendlink_edit.php. The manipulation of the argument id leads to cross-site request forge...
CVE-2024-28669
- EPSS 0.1%
- Veröffentlicht 13.03.2024 16:15:30
- Zuletzt bearbeitet 01.04.2025 13:42:31
DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/freelist_edit.php.
CVE-2024-28670
- EPSS 0.12%
- Veröffentlicht 13.03.2024 16:15:30
- Zuletzt bearbeitet 01.04.2025 13:42:28
DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/freelist_main.php.
CVE-2024-28671
- EPSS 0.5%
- Veröffentlicht 13.03.2024 16:15:30
- Zuletzt bearbeitet 01.04.2025 13:42:24
DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/stepselect_main.php.
CVE-2024-28672
- EPSS 0.12%
- Veröffentlicht 13.03.2024 16:15:30
- Zuletzt bearbeitet 01.04.2025 13:42:21
DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/media_edit.php.
CVE-2024-28673
- EPSS 0.22%
- Veröffentlicht 13.03.2024 16:15:30
- Zuletzt bearbeitet 01.04.2025 13:42:15
DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/mychannel_edit.php.
CVE-2024-28676
- EPSS 0.26%
- Veröffentlicht 13.03.2024 16:15:30
- Zuletzt bearbeitet 01.04.2025 13:42:11
DedeCMS v5.7 was discovered to contain a cross-site scripting (XSS) vulnerability via /dede/article_edit.php.
CVE-2024-28677
- EPSS 0.13%
- Veröffentlicht 13.03.2024 16:15:30
- Zuletzt bearbeitet 01.04.2025 13:42:08
DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/article_keywords_main.php.