All 7 CVE vulnerabilities found in RockOA, with AI-generated Chinese analysis, references, and POCs.
Vendor: n/a
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-9602 | Xinhu RockOA index.php publicsaveAjax improper authorization CWE-285 | 6.3 | Medium | 2025-08-29 |
| CVE-2024-7327 | Xinhu RockOA openmodhetongAction.php dataAction sql injection CWE-89 | 6.3 | Medium | 2024-07-31 |
| CVE-2024-6939 | Xinhu RockOA tpl_upload.html okla cross site scripting CWE-79 | 3.5 | Low | 2024-07-21 |
| CVE-2023-5297 | Xinhu RockOA start backup CWE-530 | 3.7 | Low | 2023-09-29 |
| CVE-2023-5296 | Xinhu RockOA Password password recovery CWE-640 | 4.3 | Medium | 2023-09-29 |
| CVE-2023-1773 | Rockoa Configuration File webmainConfig.php code injection CWE-94 | 6.3 | Medium | 2023-03-31 |
| CVE-2023-1501 | RockOA acloudCosAction.php.SQL runAction unrestricted upload CWE-434 | 6.3 | Medium | 2023-03-19 |
All 7 known CVE vulnerabilities affecting RockOA with full Chinese analysis, references, and POCs where available.