Filtered by vendor Zoneland Subscriptions
Filtered by product O2oa Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-22916 1 Zoneland 1 O2oa 2024-08-03 9.8 Critical
O2OA v6.4.7 was discovered to contain a remote code execution (RCE) vulnerability via /x_program_center/jaxrs/invoke.
CVE-2023-47418 1 Zoneland 1 O2oa 2024-08-02 9.8 Critical
Remote Code Execution (RCE) vulnerability in o2oa version 8.1.2 and before, allows attackers to create a new interface in the service management function to execute JavaScript.