Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-3467

Опубликовано: 12 окт. 2022
Источник: nvd
CVSS3: 5.5
CVSS3: 9.8
EPSS Низкий

Описание

A vulnerability classified as critical was found in Jiusi OA. Affected by this vulnerability is an unknown functionality of the file /jsoa/hntdCustomDesktopActionContent. The manipulation of the argument inforid leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-210709 was assigned to this vulnerability.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jiusi:jiusi_oa:-:*:*:*:*:*:*:*

EPSS

Процентиль: 46%
0.0023
Низкий

5.5 Medium

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-707

Связанные уязвимости

CVSS3: 9.8
github
больше 3 лет назад

A vulnerability classified as critical was found in Jiusi OA. Affected by this vulnerability is an unknown functionality of the file /jsoa/hntdCustomDesktopActionContent. The manipulation of the argument inforid leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-210709 was assigned to this vulnerability.

EPSS

Процентиль: 46%
0.0023
Низкий

5.5 Medium

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-707