Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-1258

A vulnerability was found in Juanpao JPShop up to 1.5.02. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file api/config/params.php of the component API. The manipulation of the argument JWT_KEY_ADMIN leads to use of hard-coded cryptographic key . The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The identifier VDB-252997 was assigned to this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.6%
CVSS Severity
CVSS v3 Score 3.1
CVSS v2 Score 1.8
Products affected by CVE-2024-1258
  • Juanpao » Jpshop » Version: N/A
    cpe:2.3:a:juanpao:jpshop:-
  • Juanpao » Jpshop » Version: 1.5.02
    cpe:2.3:a:juanpao:jpshop:1.5.02


Contact Us

Shodan ® - All rights reserved