DedeCMS V5.7.115 has a command execution vulnerability via file_manage_view.php?fmdo=newfile&activepath.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/iami233/cve/issues/1 | Broken Link | 
Configurations
                    History
                    31 Mar 2025, 18:49
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time | Dedecms dedecms Dedecms | |
| References | () https://github.com/iami233/cve/issues/1 - Broken Link | |
| Summary | 
 | |
| CPE | cpe:2.3:a:dedecms:dedecms:5.7.115:*:*:*:*:*:*:* | 
23 Aug 2024, 18:35
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 7.2 | 
| CWE | CWE-77 | 
23 Aug 2024, 16:18
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2024-08-23 16:15
Updated : 2025-03-31 18:49
NVD link : CVE-2024-42636
Mitre link : CVE-2024-42636
CVE.ORG link : CVE-2024-42636
JSON object : View
Products Affected
                dedecms
- dedecms
CWE
                
                    
                        
                        CWE-77
                        
            Improper Neutralization of Special Elements used in a Command ('Command Injection')
