Server-side request forgery (SSRF) vulnerability exists in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.12 and Ver.3.0.x series versions prior to Ver.3.0.32. If this vulnerability is exploited, a user with an administrator or higher privilege who can log in to the product may obtain arbitrary files on the server and information on the internal server that is not disclosed to the public.
Metrics
Affected Vendors & Products
References
History
Mon, 12 May 2025 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Appleple
Appleple a-blog Cms |
|
CPEs | cpe:2.3:a:appleple:a-blog_cms:*:*:*:*:*:*:*:* | |
Vendors & Products |
Appleple
Appleple a-blog Cms |
Mon, 19 Aug 2024 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-918 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-19T19:36:17.408Z
Reserved: 2024-03-27T03:59:36.078Z
Link: CVE-2024-30420

Updated: 2024-08-02T01:32:07.390Z

Status : Analyzed
Published: 2024-05-22T05:15:52.983
Modified: 2025-05-12T14:23:35.353
Link: CVE-2024-30420

No data.