Описание
A vulnerability was found in jeecg-boot 3.5.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file SysDictMapper.java of the component Sleep Command Handler. The manipulation leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-224629 was assigned to this vulnerability.
Ссылки
- Broken Link
- Permissions RequiredThird Party Advisory
- Third Party Advisory
- Broken Link
- Permissions RequiredThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:jeecg:jeecg_boot:3.5.0:*:*:*:*:*:*:*
EPSS
Процентиль: 10%
0.00038
Низкий
4.3 Medium
CVSS3
9.8 Critical
CVSS3
4 Medium
CVSS2
Дефекты
CWE-89
CWE-89
Связанные уязвимости
EPSS
Процентиль: 10%
0.00038
Низкий
4.3 Medium
CVSS3
9.8 Critical
CVSS3
4 Medium
CVSS2
Дефекты
CWE-89
CWE-89