Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL Injection in Xinhu OA System v1.8.3 allows remote attackers to obtain sensitive information by injecting arbitrary commands into the "typeid" variable of the "createfolderAjax" function in the "mode_worcAction.php" component.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
信呼 Rockoa Xinhu SQL注入漏洞
Vulnerability Description
Rockoa Xinhu是中国信呼(Rockoa)公司的一个基于Php的办公OA系统。 Xinhu OA System v1.8.3 存在SQL注入漏洞,该漏洞允许远程攻击者通过向“mode worcAction.php”组件的“createfolderAjax”函数的“typeid”变量中注入任意命令来获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A