All 9 CVE vulnerabilities found in MetaCRM, with AI-generated Chinese analysis, references, and POCs.
Vendor: Metasoft 美特软件
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-6629 | Metasoft 美特软件 MetaCRM Interface sql.jsp Statement.executeUpdate sql injection CWE-89 | 7.3 | High | 2026-04-20 |
| CVE-2025-7880 | Metasoft 美特软件 MetaCRM sendsms.jsp unrestricted upload CWE-434 | 6.3 | Medium | 2025-07-20 |
| CVE-2025-7879 | Metasoft 美特软件 MetaCRM mobileupload.jsp unrestricted upload CWE-434 | 6.3 | Medium | 2025-07-20 |
| CVE-2025-7878 | Metasoft 美特软件 MetaCRM upload2.jsp unrestricted upload CWE-434 | 6.3 | Medium | 2025-07-20 |
| CVE-2025-7877 | Metasoft 美特软件 MetaCRM sendfile.jsp unrestricted upload CWE-434 | 6.3 | Medium | 2025-07-20 |
| CVE-2025-7876 | Metasoft 美特软件 MetaCRM download.jsp AnalyzeParam deserialization CWE-502 | 6.3 | Medium | 2025-07-20 |
| CVE-2025-7875 | Metasoft 美特软件 MetaCRM debug.jsp improper authentication CWE-287 | 7.3 | High | 2025-07-20 |
| CVE-2025-7874 | Metasoft 美特软件 MetaCRM env.jsp information disclosure CWE-200 | 5.3 | Medium | 2025-07-20 |
| CVE-2025-7873 | Metasoft 美特软件 MetaCRM mcc_login.jsp sql injection CWE-89 | 6.3 | Medium | 2025-07-20 |
All 9 known CVE vulnerabilities affecting MetaCRM with full Chinese analysis, references, and POCs where available.