Cross-Site Request Forgery (CSRF) in Avenwu Whistle v.2.9.90 and before allows attackers to perform malicious API calls, resulting in the execution of arbitrary code on the victim's machine.
Metrics
Affected Vendors & Products
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 11 Dec 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-352 | |
| Metrics |
cvssV3_1
|
Tue, 10 Dec 2024 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) in Avenwu Whistle v.2.9.90 and before allows attackers to perform malicious API calls, resulting in the execution of arbitrary code on the victim's machine. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-12-11T15:44:09.693Z
Reserved: 2024-12-06T00:00:00.000Z
Link: CVE-2024-55500
Updated: 2024-12-11T15:43:52.425Z
Status : Deferred
Published: 2024-12-10T19:15:31.020
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-55500
No data.
OpenCVE Enrichment
No data.