Security Advisory

CVE-2025-1958

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-04 22:00:09
Last updated 2025-03-05 16:18:42
Assigner VulDB
State PUBLISHED

Description

A vulnerability, which was classified as critical, has been found in aaluoxiang oa_system 1.0. This issue affects some unknown processing of the file src/main/resources/mappers/address-mapper.xml. The manipulation of the argument outtype leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.