A vulnerability has been found in heyewei JFinalCMS 5.0.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/div_data/delete?divId=9 of the component Custom Data Page. The manipulation leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-257071.
Metrics
Affected Vendors & Products
References
History
Mon, 19 May 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Heyewei
Heyewei jfinalcms |
|
CPEs | cpe:2.3:a:heyewei:jfinalcms:5.0.0:*:*:*:*:*:*:* | |
Vendors & Products |
Heyewei
Heyewei jfinalcms |

Status: PUBLISHED
Assigner: VulDB
Published: 2024-03-17T23:00:07.874Z
Updated: 2024-08-02T18:31:33.992Z
Reserved: 2024-03-17T08:05:33.728Z
Link: CVE-2024-2568

Updated: 2024-08-01T19:18:47.882Z

Status : Analyzed
Published: 2024-03-17T23:15:05.900
Modified: 2025-05-19T12:58:49.460
Link: CVE-2024-2568

No data.