A vulnerability has been found in heyewei JFinalCMS 5.0.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/div_data/delete?divId=9 of the component Custom Data Page. The manipulation leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-257071.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 19 May 2025 13:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Heyewei Heyewei jfinalcms | |
| CPEs | cpe:2.3:a:heyewei:jfinalcms:5.0.0:*:*:*:*:*:*:* | |
| Vendors & Products | Heyewei Heyewei jfinalcms | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: VulDB
Published: 2024-03-17T23:00:07.874Z
Updated: 2024-08-02T18:31:33.992Z
Reserved: 2024-03-17T08:05:33.728Z
Link: CVE-2024-2568
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-01T19:18:47.882Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-03-17T23:15:05.900
Modified: 2025-05-19T12:58:49.460
Link: CVE-2024-2568
 Redhat
                        Redhat
                    No data.