Browse all 5 CVE security advisories affecting ZhongBangKeJi. AI-powered Chinese analysis, POCs, and references for each vulnerability.
ZhongBangKeJi develops network security products, primarily focusing on firewall and intrusion detection systems for enterprise environments. Historically, their products have been susceptible to multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues. The company has accumulated four CVEs, with several allowing unauthenticated attackers to execute arbitrary code or bypass security controls. While no major public security incidents have been widely documented, the consistent pattern of vulnerabilities in their core products suggests potential weaknesses in secure development practices. Their security track record indicates a need for more rigorous vulnerability management and secure coding protocols to protect enterprise networks.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-85040 | ZhongBangKeJi CRMEB Custom Scheduled Task Feature save eval os command injection — CRMEB CWE-78 | 4.7 | Medium | 2026-09-03 |
| CVE-2024-6944 | ZhongBangKeJi CRMEB PublicController.php get_image_base64 deserialization — CRMEB CWE-502 | 6.3 | Medium | 2024-07-21 |
| CVE-2024-6943 | ZhongBangKeJi CRMEB CopyTaobaoServices.php downloadImage deserialization — CRMEB CWE-502 | 6.3 | Medium | 2024-07-21 |
| CVE-2024-1704 | ZhongBangKeJi CRMEB crud delete path traversal — CRMEB CWE-22 | 5.5 | Medium | 2024-02-21 |
| CVE-2024-1703 | ZhongBangKeJi CRMEB openfile absolute path traversal — CRMEB CWE-36 | 3.5 | Low | 2024-02-21 |
This page lists every published CVE security advisory associated with ZhongBangKeJi. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.