Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
fuyang_lipengjun platform ScheduleJobController.java queryPage sql injection
Vulnerability Description
A vulnerability, which was classified as critical, has been found in fuyang_lipengjun platform up to ca9aceff6902feb7b0b6bf510842aea88430796a. This issue affects the function queryPage of the file platform-schedule/src/main/java/com/platform/controller/ScheduleJobController.java. The manipulation of the argument beanName leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Weitong Mall 注入漏洞
Vulnerability Description
Weitong Mall(微同商城)是fuyang_lipengjun个人开发者的一个商场系统。 Weitong Mall存在注入漏洞,该漏洞源于文件platform-schedule/src/main/java/com/platform/controller/ScheduleJobController.java中函数queryPage存在SQL注入问题,可能导致远程攻击。
CVSS Information
N/A
Vulnerability Type
N/A