Vulnerabilities > CVE-2024-5736 - Server-Side Request Forgery (SSRF) vulnerability in Admiror-Design-Studio Admirorframes
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
Server Side Request Forgery (SSRF) vulnerability in AdmirorFrames Joomla! extension in afGdStream.php script allows to access local files or server pages available only from localhost. This issue affects AdmirorFrames: before 5.0.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Common Weakness Enumeration (CWE)
References
- https://cert.pl/en/posts/2024/06/CVE-2024-5735/
- https://cert.pl/en/posts/2024/06/CVE-2024-5735/
- https://cert.pl/posts/2024/06/CVE-2024-5735/
- https://cert.pl/posts/2024/06/CVE-2024-5735/
- https://github.com/afine-com/CVE-2024-5736
- https://github.com/afine-com/CVE-2024-5736
- https://github.com/sectroyer/CVEs/tree/main/CVE-2024-5736
- https://github.com/sectroyer/CVEs/tree/main/CVE-2024-5736
- https://github.com/vasiljevski/admirorframes/issues/3
- https://github.com/vasiljevski/admirorframes/issues/3