{ "id": "CVE-2024-31022", "sourceIdentifier": "cve@mitre.org", "published": "2024-04-08T06:15:07.690", "lastModified": "2024-04-08T18:48:40.217", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "An issue was discovered in CandyCMS version 1.0.0, allows remote attackers to execute arbitrary code via the install.php component." }, { "lang": "es", "value": "Se descubri\u00f3 un problema en CandyCMS versi\u00f3n 1.0.0 que permite a atacantes remotos ejecutar c\u00f3digo arbitrario a trav\u00e9s del componente install.php." } ], "metrics": {}, "references": [ { "url": "https://www.xuxblog.top/2024/03/25/CandyCMS-Pre-Auth-RCE/", "source": "cve@mitre.org" } ] }