Логотип exploitDog
bind:CVE-2025-63740
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-63740

Количество 2

Количество 2

nvd логотип

CVE-2025-63740

2 месяца назад

SQL Injection vulnerability in function getselectdataAjax in file inputAction.php in Xinhu Rainrock RockOA 2.7.0 allowing attackers gain sensitive information, including administrator accounts, password hashes, database structure, and other critical data via the actstr parameter.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-h8gv-f6fg-6959

2 месяца назад

SQL Injection vulnerability in function getselectdataAjax in file inputAction.php in Xinhu Rainrock RockOA 2.7.0 allowing attackers gain sensitive information, including administrator accounts, password hashes, database structure, and other critical data via the actstr parameter.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-63740

SQL Injection vulnerability in function getselectdataAjax in file inputAction.php in Xinhu Rainrock RockOA 2.7.0 allowing attackers gain sensitive information, including administrator accounts, password hashes, database structure, and other critical data via the actstr parameter.

CVSS3: 4.3
0%
Низкий
2 месяца назад
github логотип
GHSA-h8gv-f6fg-6959

SQL Injection vulnerability in function getselectdataAjax in file inputAction.php in Xinhu Rainrock RockOA 2.7.0 allowing attackers gain sensitive information, including administrator accounts, password hashes, database structure, and other critical data via the actstr parameter.

CVSS3: 4.3
0%
Низкий
2 месяца назад

Уязвимостей на страницу