Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Multiple vulnerabilities in TCMAN's GIM
Vulnerability Description
SQL injection in TCMAN's GIM v11. This vulnerability allows an unauthenticated attacker to inject an SQL statement to obtain, update and delete all information in the database. This vulnerability was found in each of the following parameters according to the vulnerability identifier ‘Sender’ and “email” parameters of the ‘createNotificationAndroid’ endpoint.
CVSS Information
N/A
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Tcman Gim SQL注入漏洞
Vulnerability Description
Tcman Gim是西班牙Tcman公司的一个专为在移动设备上使用而设计的设施管理软件。 Tcman Gim v11版本存在SQL注入漏洞,该漏洞源于createNotificationAndroid端点Sender和email参数存在SQL注入。
CVSS Information
N/A
Vulnerability Type
N/A