Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

IBOS — Vulnerabilities & Security Advisories 17

Browse all 17 CVE security advisories affecting IBOS. AI-powered Chinese analysis, POCs, and references for each vulnerability.

IBOS is an IoT device management platform primarily used for remote monitoring and control of network infrastructure. Historically, it has been susceptible to multiple remote code execution, cross-site scripting, and privilege escalation vulnerabilities, accounting for its 17 recorded CVEs. The platform's web interfaces and authentication mechanisms have been frequent attack vectors, with several critical flaws allowing unauthorized access or device compromise. While no major public incidents have been widely documented, the consistent pattern of vulnerabilities in its management interfaces and communication protocols presents significant risks for organizations deploying IBOS in production environments, particularly those with internet-exposed devices.

Top products by IBOS: OA
CVE ID Title CVSS Severity Published
CVE-2023-4852 IBOS OA optimize sql injection — OA CWE-89 6.3 Medium 2023-09-09
CVE-2023-4851 IBOS OA edit&op=member sql injection — OA CWE-89 6.3 Medium 2023-09-09
CVE-2023-4850 IBOS OA del sql injection — OA CWE-89 6.3 Medium 2023-09-09
CVE-2023-4849 IBOS OA trash&op=del sql injection — OA CWE-89 6.3 Medium 2023-09-09
CVE-2023-4742 IBOS OA export&uid=X sql injection — OA CWE-89 6.3 Medium 2023-09-03
CVE-2023-4741 IBOS OA Delete Logs del sql injection — OA CWE-89 6.3 Medium 2023-09-03
CVE-2023-4740 IBOS OA Delete Draft delDraft&archiveId=0 sql injection — OA CWE-89 6.3 Medium 2023-09-03
CVE-2023-4713 IBOS OA addcomment addComment sql injection — OA CWE-89 5.5 Medium 2023-09-01
CVE-2023-4545 IBOS OA export&checkids=x sql injection — OA CWE-89 6.3 Medium 2023-08-26
CVE-2023-4543 IBOS OA export&contactids=x sql injection — OA CWE-89 6.3 Medium 2023-08-25
CVE-2023-3826 IBOS OA Interview edit&op=status sql injection — OA CWE-89 6.3 Medium 2023-07-22
CVE-2023-3801 IBOS OA Mobile Notification edit actionEdit sql injection — OA CWE-89 5.5 Medium 2023-07-20
CVE-2023-3799 IBOS OA Delete Category del sql injection — OA CWE-89 6.3 Medium 2023-07-20
CVE-2023-3791 IBOS OA Personal Office Address Book export actionExport sql injection — OA CWE-89 6.3 Medium 2023-07-20
CVE-2023-3621 IBOS OA Delete Packet delete createDeleteCommand sql injection — OA CWE-89 6.3 Medium 2023-07-11
CVE-2023-3478 IBOS OA Add User edit&op=member actionEdit sql injection — OA CWE-89 4.7 Medium 2023-06-30
CVE-2023-3449 IBOS OA Interview Management Export export&interviews=x actionExport sql injection — OA CWE-89 5.5 Medium 2023-06-28

This page lists every published CVE security advisory associated with IBOS. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.