该漏洞存在于ERP系统中,原因是API端点中身份验证和授权控制不当。未认证的远程攻击者可以通过操纵相关参数来利用此漏洞,从而导致目标系统中其他用户的敏感信息泄露。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Manacle Technologies | Multi-tenant ERP System | version |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Manacle Technologies | Multi-tenant ERP System | version | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-84147 | 10.0 CRITICAL | Remote Code Execution Vulnerability in Manacle Technologies ERP System |
| CVE-2026-84149 | 9.2 CRITICAL | Information Disclosure Vulnerability in Manacle Technologies ERP System |
No comments yet