Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-34141 PoC — ETQ Reliance CG 安全漏洞

Source
Associated Vulnerability
Title:ETQ Reliance CG 安全漏洞 (CVE-2025-34141)
Description:ETQ Reliance CG是美国ETQ公司的一款质量管理系统。 ETQ Reliance CG存在安全漏洞,该漏洞源于SQLConverterServlet组件容易受到反射型跨站脚本攻击,可能导致在用户环境中执行未授权脚本。
Description
A reflected cross-site scripting (XSS) vulnerability exists in ETQ Reliance CG (legacy) platform within the SQLConverterServlet component. This vulnerability requires user interaction, such as clicking a crafted link, and may result in execution of unauthorized scripts in the user's context. The affected servlet was unnecessarily exposed to authenticated users and has since been disabled in version SE.2025.1.
File Snapshot

id: CVE-2025-34141 info: name: ETQ Reliance - Reflected XSS via SQLConverterServlet author: slc ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.