CVE-2024-8711

A vulnerability, which was classified as problematic, has been found in SourceCodester Food Ordering Management System 1.0. Affected by this issue is some unknown functionality of the file /includes/. The manipulation leads to exposure of information through directory listing. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
References
Link Resource
https://github.com/jz-qb/cve/blob/main/dir.md Exploit Third Party Advisory
https://vuldb.com/?ctiid.277220 Permissions Required
https://vuldb.com/?id.277220 Third Party Advisory VDB Entry
https://vuldb.com/?submit.405343 Third Party Advisory VDB Entry
https://www.sourcecodester.com/ Product
Configurations

Configuration 1 (hide)

cpe:2.3:a:oretnom23:food_ordering_management_system:1.0:*:*:*:*:*:*:*

History

13 Sep 2024, 16:18

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : 5.3
v2 : 5.0
v3 : 7.5
First Time Oretnom23
Oretnom23 food Ordering Management System
CWE NVD-CWE-Other
References () https://github.com/jz-qb/cve/blob/main/dir.md - () https://github.com/jz-qb/cve/blob/main/dir.md - Exploit, Third Party Advisory
References () https://vuldb.com/?ctiid.277220 - () https://vuldb.com/?ctiid.277220 - Permissions Required
References () https://vuldb.com/?id.277220 - () https://vuldb.com/?id.277220 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.405343 - () https://vuldb.com/?submit.405343 - Third Party Advisory, VDB Entry
References () https://www.sourcecodester.com/ - () https://www.sourcecodester.com/ - Product
CPE cpe:2.3:a:oretnom23:food_ordering_management_system:1.0:*:*:*:*:*:*:*

12 Sep 2024, 12:35

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad clasificada como problemática en SourceCodester Food Ordering Management System 1.0. Este problema afecta a algunas funciones desconocidas del archivo /includes/. La manipulación conduce a la exposición de información a través de la lista de directorios. El ataque puede ejecutarse de forma remota. El exploit se ha hecho público y puede utilizarse.

12 Sep 2024, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-12 04:15

Updated : 2024-09-13 16:18


NVD link : CVE-2024-8711

Mitre link : CVE-2024-8711

CVE.ORG link : CVE-2024-8711


JSON object : View

Products Affected

oretnom23

  • food_ordering_management_system
CWE
NVD-CWE-Other CWE-548

Exposure of Information Through Directory Listing