该漏洞存在于 ERP 系统中,原因是 目录对外公开可访问,导致仓库信息暴露。未认证的远程攻击者可以利用此漏洞,通过访问暴露的 目录,获取仓库元数据及相关文件,从而可能重构出应用的源代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Manacle Technologies | Multi-tenant ERP System | version |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Manacle Technologies | Multi-tenant ERP System | version | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-84147 | 10.0 CRITICAL | Remote Code Execution Vulnerability in Manacle Technologies ERP System |
| CVE-2026-84148 | 9.2 CRITICAL | Insecure Direct Object Reference Vulnerability in Manacle Technologies ERP System |
No comments yet