Security Advisory

CVE-2022-45564

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-02-21 00:00:00
Last updated 2025-03-17 17:03:31
Assigner mitre
State PUBLISHED

Description

SQL Injection vulnerability in znfit Home improvement ERP management system V50_20220207,v42 allows attackers to execute arbitrary sql commands via the userCode parameter to the wechat applet.