CVE-2024-0414: Csdeshang Dscms

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

A vulnerability classified as problematic has been found in DeShang DSCMS up to 3.1.2/7.1. Affected is an unknown function of the file public/install.php. The manipulation leads to improper access controls. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-250434 is the identifier assigned to this vulnerability.

Affected products

  • Csdeshang Dscms: from 3.1.0, up to and including 3.1.2; version 7.0 only; version 7.1 only

Published 2024-01-11. Last modified 2026-06-17.