Medium severity6.6NVD Advisory· Published May 22, 2024· Updated Jun 17, 2026
CVE-2024-31396
CVE-2024-31396
Description
Code injection vulnerability exists in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.12 and Ver.3.0.x series versions prior to Ver.3.0.32. If this vulnerability is exploited, a user with an administrator or higher privilege who can log in to the product may execute an arbitrary command on the server.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- appleple inc./a-blog cms Ver.3.0.x seriesv5Range: prior to Ver.3.0.32
- appleple inc./a-blog cms Ver.3.1.x seriesv5Range: prior to Ver.3.1.12
Patches
Vulnerability mechanics
References
2- developer.a-blogcms.jp/blog/news/JVN-70977403.htmlnvdVendor Advisory
- jvn.jp/en/jp/JVN70977403/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.