Metrics
Affected Vendors & Products
Fri, 01 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tongda
Tongda oa 2017 |
|
CPEs | cpe:2.3:a:tongda:oa_2017:*:*:*:*:*:*:*:* | |
Vendors & Products |
Tongda
Tongda oa 2017 |
|
Metrics |
ssvc
|
ssvc
|
Fri, 01 Nov 2024 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 31 Oct 2024 23:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Tongda OA 2017 up to 11.9 and classified as critical. Affected by this issue is some unknown functionality of the file /general/approve_center/list/input_form/data_picker_link.php. The manipulation of the argument dataSrc leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
Title | Tongda OA 2017 data_picker_link.php sql injection | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-10-31T23:31:04.070Z
Updated: 2024-11-01T14:28:15.929Z
Reserved: 2024-10-31T15:25:16.122Z
Link: CVE-2024-10602
Updated: 2024-11-01T14:02:34.656Z
Status : Awaiting Analysis
Published: 2024-11-01T00:15:02.973
Modified: 2024-11-01T12:57:03.417
Link: CVE-2024-10602
No data.