Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL Injection vulnerability in CRMEB crmeb_java v.1.3.4 and before allows a remote attacker to obtain sensitive information via the latitude and longitude parameters in the api/front/store/list component.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CRMEB 安全漏洞
Vulnerability Description
Zhongbang CRMEB是中国西安众邦网络(Zhongbang)公司的一套开源的电商管理系统。 CRMEB crmeb_java v.1.3.4版本及之前版本存在安全漏洞。远程攻击者利用该漏洞通过 api/front/store/list 组件中的latitude和longitude参数获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A