Tongda OA kuze kube 11.10 check_seal.php ISazisi SQL Injection
Kukhona ubuthakathaka obubizwa ngokuthi kubalulekile kakhulu obutholakele ku Tongda OA kuze kube 11.10. Kuthintekile umsebenzi $software_function kufayela /pda/appcenter/check_seal.php. Ukusebenzisa kwepharamitha ISazisi kuholela ku SQL Injection. Ukusebenzisa i-CWE ukukhomba inkinga kuholela ku-CWE-89. Ubuthakathaka babikwa 2024-11-02. Isaziso sabelwe ukuthi singalayishwa ku-github.com.
Lokhu buthakathaka kuthengiswa njenge CVE-2024-10731. Kuyenzeka ukuqala ukuhlasela kude. Kukhona imininingwane yezobuchwepheshe etholakalayo. Ngaphezu kwalokho, kukhona i-exploit etholakalayo. Ukuhlaselwa sekudalulwe emphakathini futhi kungasetshenziswa. Okwamanje, intengo yamanje ye-exploit ingaba cishe USD $0-$5k ngalesi sikhathi.
Kuyenzeka ukulanda i-exploit ku-github.com.
VulDB is the best source for vulnerability data and more expert information about this specific topic.
3 Ukulungiswa · 86 Amaphuzu wedatha