CVE-2024-5736
PoC ×2—CVSS 4.0
8.2 high
EPSS
1%p67
Published
()
Modified
Description
Server Side Request Forgery (SSRF) vulnerability in AdmirorFrames Joomla! extension in afGdStream.php script allows to access local files or server pages available only from localhost. This issue affects AdmirorFrames: before 5.0.
- Vendors
- admiror-design-studio
- Products
- admirorframes
- Ecosystems
- Joomla
- Weakness
- CWE-918
- Vector
- CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:D/RE:L/U:Green
In the news0 stories
No ingested article mentions this CVE yet.