Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in Kinsey Infor-Lawson (formerly ESBUS) allow remote attackers to execute arbitrary SQL commands via the (1) TABLE parameter to esbus/servlet/GetSQLData or (2) QUERY parameter to KK_LS9ReportingPortal/GetData.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Kinsey Infor-Lawson SQL注入漏洞
Vulnerability Description
Kinsey Infor-Lawson(前称ESBUS)是美国Kinsey公司的一套供应链管理解决方案。该方案提供控制采购成本和流程、优化整个供应商关系和延伸供应链的价值等功能。 Kinsey Infor-Lawson中存在SQL注入漏洞。远程攻击者可借助‘TABLE’或‘QUERY’参数利用该漏洞执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A