CVE-2024-4836: Edito CMS - Sensitive Data Leak

HoneyLabs honeypots recorded 49 probes matching CVE-2024-4836 from 7 distinct source IP addresses in the last 7 days. Severity is rated high.

Request paths that identify it

  • /config/config.php
  • /includes/config.php
  • /include/config.php

Addresses probing it

Source IPProbesNetworkCountry
195.128.248.3330Virtual Systems LLCUkraine
195.178.110.287Techoff Srv LimitedBulgaria
45.148.10.1835Techoff Srv LimitedThe Netherlands
87.120.104.293Sino Worldwide Trading LimitedNorway
87.58.199.1342WebNX, Inc.United States
185.177.72.1001Bucklog SARLFrance
185.177.72.381Bucklog SARLFrance

Networks it comes from

ASNOrganisationProbesSource IPs
AS6698Virtual Systems LLC301
AS48090Techoff Srv Limited122
AS211443Sino Worldwide Trading Limited31
AS211590Bucklog SARL22
AS18450WebNX, Inc.21

Captured requests

  • /include/config.php
  • /include/config.php.bak
  • /config/config.php

HTTP client fingerprints (JA4H)

  • ge11nn05en_a30a0ff230b0
  • ge11nn14en_068ebe3632ec
  • ge11nn0400_cf1edba2959c
  • ge11nn04en_171d872ea17d

CVE report

CVE report

Open a specific CVE from the CVE tracker.