ALCASAR before 3.6.1 allows CSRF and remote code execution in activity.php.
History

Wed, 18 Jun 2025 17:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:alcasar:alcasar:*:*:*:*:*:*:*:*

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-06-13T00:00:00

Updated: 2024-08-02T04:04:25.146Z

Reserved: 2024-06-13T00:00:00

Link: CVE-2024-38293

cve-icon Vulnrichment

Updated: 2024-06-13T18:12:05.927Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-13T05:15:50.517

Modified: 2025-06-18T17:28:40.387

Link: CVE-2024-38293

cve-icon Redhat

No data.