2024-05-14 16:04:21 +00:00
{
"id" : "CVE-2024-34749" ,
"sourceIdentifier" : "vultures@jpcert.or.jp" ,
"published" : "2024-05-14T15:39:32.140" ,
2025-03-27 19:03:52 +00:00
"lastModified" : "2025-03-27T17:15:56.143" ,
2024-05-14 18:03:25 +00:00
"vulnStatus" : "Awaiting Analysis" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [
{
"sourceIdentifier" : "vultures@jpcert.or.jp" ,
"tags" : [
"unsupported-when-assigned"
]
}
] ,
2024-05-14 16:04:21 +00:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Phormer prior to version 3.35 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote unauthenticated attacker may execute an arbitrary script on the web browser of the user."
2024-05-17 04:04:07 +00:00
} ,
{
"lang" : "es" ,
"value" : "Phomer anterior a la versi\u00f3n 3.35 contiene una vulnerabilidad de Cross Site Scripting. Si se explota esta vulnerabilidad, un atacante remoto no autenticado puede ejecutar un script arbitrario en el navegador web del usuario."
2024-05-14 16:04:21 +00:00
}
] ,
2025-03-27 19:03:52 +00:00
"metrics" : {
"cvssMetricV31" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" ,
"baseScore" : 6.1 ,
"baseSeverity" : "MEDIUM" ,
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "REQUIRED" ,
"scope" : "CHANGED" ,
"confidentialityImpact" : "LOW" ,
"integrityImpact" : "LOW" ,
"availabilityImpact" : "NONE"
} ,
"exploitabilityScore" : 2.8 ,
"impactScore" : 2.7
}
]
} ,
"weaknesses" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-79"
}
]
}
] ,
2024-05-14 16:04:21 +00:00
"references" : [
{
"url" : "http://p.horm.org/er/" ,
"source" : "vultures@jpcert.or.jp"
} ,
{
"url" : "https://github.com/eyedean/phormer" ,
"source" : "vultures@jpcert.or.jp"
} ,
{
"url" : "https://jvn.jp/en/jp/JVN61054671/" ,
"source" : "vultures@jpcert.or.jp"
} ,
{
"url" : "https://sourceforge.net/projects/rephormer/" ,
"source" : "vultures@jpcert.or.jp"
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "http://p.horm.org/er/" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://github.com/eyedean/phormer" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://jvn.jp/en/jp/JVN61054671/" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://sourceforge.net/projects/rephormer/" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2024-05-14 16:04:21 +00:00
}
]
}