VYPR
Medium severity5.5NVD Advisory· Published Oct 12, 2022· Updated Jun 17, 2026

CVE-2022-3467

CVE-2022-3467

Description

A vulnerability classified as critical was found in Jiusi OA. Affected by this vulnerability is an unknown functionality of the file /jsoa/hntdCustomDesktopActionContent. The manipulation of the argument inforid leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-210709 was assigned to this vulnerability.

Affected products

3
  • Jiusi/OA2 versions
    cpe:2.3:a:jiusi:jiusi_oa:-:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:jiusi:jiusi_oa:-:*:*:*:*:*:*:*
    • (no CPE)
  • Jiusi/OAv5
    Range: n/a

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.