ZeroHour

CVE-2024-5736

PoC ×2
CVSS 4.0
8.2 high
EPSS
1%p67
Published
()
Modified
Description

Server Side Request Forgery (SSRF) vulnerability in AdmirorFrames Joomla! extension in afGdStream.php script allows to access local files or server pages available only from localhost. This issue affects AdmirorFrames: before 5.0.

Vendors
admiror-design-studio
Products
admirorframes
Ecosystems
Joomla
Weakness
CWE-918
Vector
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:D/RE:L/U:Green

In the news

No ingested article mentions this CVE yet.