在 OS4ED openSIS-Classic 9.3 及更早版本中发现了一个漏洞。受影响的是“General Information Tab”组件中 文件的 函数。通过操纵 参数,可触发 SQL 注入漏洞。该攻击可从远程发起。利用方法已公开披露,可能被恶意利用。项目方已通过问题报告提前获知该漏洞,但尚未作出回应。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OS4ED | openSIS-Classic | 9.0 |
cpe:2.3:a:os4ed:opensis-classic:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet