CVE Database
/

CVE-2024-30420

Back to search

CVE-2024-30420

Published: May 22, 2024

Modified: Aug 19, 2024

PUBLISHED

Description

Server-side request forgery (SSRF) vulnerability exists in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.12 and Ver.3.0.x series versions prior to Ver.3.0.32. If this vulnerability is exploited, a user with an administrator or higher privilege who can log in to the product may obtain arbitrary files on the server and information on the internal server that is not disclosed to the public.

VendorProductVersions

appleple inc.

a-blog cms Ver.3.1.x series

affected
prior to Ver.3.1.12

appleple inc.

a-blog cms Ver.3.0.x series

affected
prior to Ver.3.0.32

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now