CVE-2024-12351 - JFinalCMS SQL Injection Vulnerability

CVE ID : CVE-2024-12351 Published : Dec. 9, 2024, 1:15 a.m. | 2 hours, 44 minutes ago Description : A vulnerability classified as critical has been found in JFinalCMS 1.0. This affects the function findPage of the file src\main\java\com\cms\entity\ContentModel.java of the component File Content Handler. The manipulation of the argument name leads to sql injection. It is possible to initiate the attack remotely. Severity: 6.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Dez 9, 2024 - 05:00
 0  2
CVE-2024-12351 - JFinalCMS SQL Injection Vulnerability
CVE ID : CVE-2024-12351
Published : Dec. 9, 2024, 1:15 a.m. | 2 hours, 44 minutes ago
Description : A vulnerability classified as critical has been found in JFinalCMS 1.0. This affects the function findPage of the file src\main\java\com\cms\entity\ContentModel.java of the component File Content Handler. The manipulation of the argument name leads to sql injection. It is possible to initiate the attack remotely.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...