id: CVE-2024-57241 info: name: DedeCMS - Open Redirect via download.php author: 0x_Akoko severity: medium description: | Dedecms 5.71sp1 and earlier contain a URL redirect caused by a logic error that does not properly validate GET request input, letting attackers redirect users to arbitrary URLs, exploit requires sending crafted GET requests. impact: | Attackers can redirect users to malicious sites, potentially leading to phishing or malware distribution. remediation: | Update to the latest version of Dedecms or apply security patches addressing URL redirect issues. reference: - https://nvd.nist.gov/vuln/detail/CVE-2024-57241 - https://github.com/woshidaheike/dedecms-url-redirection classification: cve-id: CVE-2024-57241 epss-score: 0.01125 epss-percentile: 0.62883 cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N cvss-score: 6.1 cwe-id: CWE-601 metadata: verified: true max-request: 2 vendor: dedecms product: dedecms shodan-query: 'http.title:"DedeCMS"' fofa-query: 'body="DedeCMS" || body="/plus/download.php"' tags: cve,cve2024,dedecms,redirect,cms http: - raw: - | GET /plus/download.php?open=1&link=aHR0cHM6Ly9pbnRlcmFjdC5zaA== HTTP/1.1 Host: {{Hostname}} matchers: - type: dsl dsl: - 'status_code == 302' - 'location == "https://interact.sh"' condition: and # digest: 4a0a00473045022100a75f6892366130d3d378d0073b7976c3d141a68be4bfda48f02f802058868d5b022068c82d5bbee8e037fe4fe117d829171c6435854c4d8d2d0d30dd964630905d95:922c64590222798bb761d5b6d8e72950