Show plain JSON{"dataType": "CVE_RECORD", "dataVersion": "5.1", "cveMetadata": {"cveId": "CVE-2024-2569", "assignerOrgId": "1af790b2-7ee1-4545-860a-a788eba489b5", "state": "PUBLISHED", "assignerShortName": "VulDB", "dateReserved": "2024-03-17T08:25:36.100Z", "datePublished": "2024-03-17T23:31:04.482Z", "dateUpdated": "2024-08-02T17:22:44.764Z"}, "containers": {"cna": {"providerMetadata": {"orgId": "1af790b2-7ee1-4545-860a-a788eba489b5", "shortName": "VulDB", "dateUpdated": "2024-03-17T23:31:04.482Z"}, "title": "SourceCodester Employee Task Management System admin-manage-user.php redirect", "problemTypes": [{"descriptions": [{"type": "CWE", "cweId": "CWE-698", "lang": "en", "description": "CWE-698 Execution After Redirect"}]}], "affected": [{"vendor": "SourceCodester", "product": "Employee Task Management System", "versions": [{"version": "1.0", "status": "affected"}]}], "descriptions": [{"lang": "en", "value": "A vulnerability was found in SourceCodester Employee Task Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin-manage-user.php. The manipulation leads to execution after redirect. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-257072."}, {"lang": "de", "value": "Eine Schwachstelle wurde in SourceCodester Employee Task Management System 1.0 gefunden. Sie wurde als kritisch eingestuft. Dies betrifft einen unbekannten Teil der Datei /admin-manage-user.php. Mit der Manipulation mit unbekannten Daten kann eine execution after redirect-Schwachstelle ausgenutzt werden. Der Angriff kann \u00fcber das Netzwerk passieren. Der Exploit steht zur \u00f6ffentlichen Verf\u00fcgung."}], "metrics": [{"cvssV3_1": {"version": "3.1", "baseScore": 7.3, "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L", "baseSeverity": "HIGH"}}, {"cvssV3_0": {"version": "3.0", "baseScore": 7.3, "vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L", "baseSeverity": "HIGH"}}, {"cvssV2_0": {"version": "2.0", "baseScore": 7.5, "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P"}}], "timeline": [{"time": "2024-03-17T00:00:00.000Z", "lang": "en", "value": "Advisory disclosed"}, {"time": "2024-03-17T01:00:00.000Z", "lang": "en", "value": "VulDB entry created"}, {"time": "2024-03-17T15:23:01.000Z", "lang": "en", "value": "VulDB entry last update"}], "credits": [{"lang": "en", "value": "Joshua Lictan", "type": "finder"}, {"lang": "en", "value": "nochizplz (VulDB User)", "type": "reporter"}, {"lang": "en", "value": "nochizplz (VulDB User)", "type": "analyst"}], "references": [{"url": "https://vuldb.com/?id.257072", "name": "VDB-257072 | SourceCodester Employee Task Management System admin-manage-user.php redirect", "tags": ["vdb-entry"]}, {"url": "https://vuldb.com/?ctiid.257072", "name": "VDB-257072 | CTI Indicators (IOB, IOC, TTP, IOA)", "tags": ["signature", "permissions-required"]}, {"url": "https://github.com/skid-nochizplz/skid-nochizplz/blob/main/TrashBin/CVE/SOURCECODESTER%20Employee%20Task%20Management%20System/Execution%20After%20Redirect%20-%20admin-manage-user.php.md", "tags": ["exploit"]}]}, "adp": [{"providerMetadata": {"orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE", "dateUpdated": "2024-08-01T19:18:48.113Z"}, "title": "CVE Program Container", "references": [{"url": "https://vuldb.com/?id.257072", "name": "VDB-257072 | SourceCodester Employee Task Management System admin-manage-user.php redirect", "tags": ["vdb-entry", "x_transferred"]}, {"url": "https://vuldb.com/?ctiid.257072", "name": "VDB-257072 | CTI Indicators (IOB, IOC, TTP, IOA)", "tags": ["signature", "permissions-required", "x_transferred"]}, {"url": "https://github.com/skid-nochizplz/skid-nochizplz/blob/main/TrashBin/CVE/SOURCECODESTER%20Employee%20Task%20Management%20System/Execution%20After%20Redirect%20-%20admin-manage-user.php.md", "tags": ["exploit", "x_transferred"]}]}, {"affected": [{"vendor": "employee_task_management_system_project", "product": "employee_task_management_system", "cpes": ["cpe:2.3:a:employee_task_management_system_project:employee_task_management_system:1.0:*:*:*:*:*:*:*"], "defaultStatus": "unknown", "versions": [{"version": "1.0", "status": "affected"}]}], "metrics": [{"other": {"type": "ssvc", "content": {"timestamp": "2024-03-18T15:39:14.823969Z", "id": "CVE-2024-2569", "options": [{"Exploitation": "poc"}, {"Automatable": "no"}, {"Technical Impact": "partial"}], "role": "CISA Coordinator", "version": "2.0.3"}}}], "title": "CISA ADP Vulnrichment", "providerMetadata": {"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP", "dateUpdated": "2024-08-02T17:22:44.764Z"}}]}}