Metrics
Affected Vendors & Products
Tue, 21 Oct 2025 23:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Tue, 21 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Tue, 21 Oct 2025 19:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Wed, 24 Sep 2025 13:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-863 | 
Tue, 23 Sep 2025 16:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-287 | 
Tue, 23 Sep 2025 15:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-306 | 
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | epss 
 | epss 
 | 
Fri, 06 Dec 2024 19:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-863 | 
Tue, 03 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | kev 
 | 
Tue, 03 Dec 2024 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | ssvc 
 | 
Tue, 26 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Projectsend Projectsend projectsend | |
| CPEs | cpe:2.3:a:projectsend:projectsend:*:*:*:*:*:*:*:* | |
| Vendors & Products | Projectsend Projectsend projectsend | |
| Metrics | ssvc 
 | 
Tue, 26 Nov 2024 10:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | ProjectSend versions prior to r1720 are affected by an improper authentication vulnerability. Remote, unauthenticated attackers can exploit this flaw by sending crafted HTTP requests to options.php, enabling unauthorized modification of the application's configuration. Successful exploitation allows attackers to create accounts, upload webshells, and embed malicious JavaScript. | |
| Title | ProjectSend Unauthenticated Configuration Modification | |
| Weaknesses | CWE-287 | |
| References |  | 
 | 
| Metrics | cvssV3_1 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-10-21T22:55:35.287Z
Reserved: 2024-11-25T15:03:30.218Z
Link: CVE-2024-11680
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-11-26T14:19:04.072Z
 NVD
                        NVD
                    Status : Modified
Published: 2024-11-26T10:15:04.540
Modified: 2025-10-21T23:16:18.690
Link: CVE-2024-11680
 Redhat
                        Redhat
                    No data.