Impact
The reported vulnerability arises from a missing authorization check in the SysCommentController exportXls handler. It allows any authenticated user to invoke /sys/comment/exportXls and retrieve every row from the sys_comment table, exposing comment text and user identifiers that the user would normally not be permitted to view. This results in a confidentiality compromise of user data and could enable low‑privileged attackers to gather contextual information about system usage and other users.
Affected Systems
JeecgBoot installations running through version 3.9.5 are affected. The issue exists in all releases up to and including 3.9.5, and the fix is referenced in later versions of the framework.
Risk and Exploitability
The CVSS score of 5.3 indicates moderate risk. The EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog. The attack vector is straightforward: an authenticated user can send an HTTP request to the /sys/comment/exportXls endpoint and download all comments. Because no additional authentication or integrity checks are performed, low‑privileged attackers can harvest sensitive data from records that are otherwise beyond their access level.
OpenCVE Enrichment