High severity7.3NVD Advisory· Published Aug 17, 2024· Updated Jun 17, 2026
CVE-2024-7898
CVE-2024-7898
Description
A vulnerability classified as critical was found in Tosei Online Store Management System ネット店舗管理システム 4.02/4.03/4.04. This vulnerability affects unknown code of the component Backend. The manipulation leads to use of default credentials. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
5cpe:2.3:a:tosei-corporation:online_store_management_system:4.0.2:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:tosei-corporation:online_store_management_system:4.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:tosei-corporation:online_store_management_system:4.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:tosei-corporation:online_store_management_system:4.0.4:*:*:*:*:*:*:*
- (no CPE)range: 4.02, 4.03, 4.04
- (no CPE)range: 4.02
Patches
Vulnerability mechanics
References
4- vuldb.comnvdThird Party Advisory
- gist.github.com/b0rgch3n/3136cad95b09e42184fb2d78aae33651nvdBroken Link
- vuldb.comnvdPermissions Required
- vuldb.comnvdPermissions Required
News mentions
0No linked articles in our index yet.