A vulnerability has been found in heyewei JFinalCMS 5.0.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/div_data/delete?divId=9 of the component Custom Data Page. The manipulation leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-257071.
History

Mon, 19 May 2025 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Heyewei
Heyewei jfinalcms
CPEs cpe:2.3:a:heyewei:jfinalcms:5.0.0:*:*:*:*:*:*:*
Vendors & Products Heyewei
Heyewei jfinalcms

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-03-17T23:00:07.874Z

Updated: 2024-08-02T18:31:33.992Z

Reserved: 2024-03-17T08:05:33.728Z

Link: CVE-2024-2568

cve-icon Vulnrichment

Updated: 2024-08-01T19:18:47.882Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-17T23:15:05.900

Modified: 2025-05-19T12:58:49.460

Link: CVE-2024-2568

cve-icon Redhat

No data.