Beveiligingsadvies

CVE-2024-10600

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-10-31 23:00:06
Laatst bijgewerkt 2024-11-01 15:53:34
Toegewezen door VulDB
CVSS-score 7.5
Status PUBLISHED

Beschrijving

A vulnerability, which was classified as critical, was found in Tongda OA 2017 up to 11.6. Affected is an unknown function of the file pda/appcenter/submenu.php. The manipulation of the argument appid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.