High severity8.8NVD Advisory· Published Aug 20, 2024· Updated Jun 17, 2026
CVE-2024-42585
CVE-2024-42585
Description
A Cross-Site Request Forgery (CSRF) in the component delete_media.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: =2.0
Patches
Vulnerability mechanics
References
1- gist.github.com/topsky979/33de7a4bd7a4517a26fa4e4911b7fb1dnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.