VYPR
Unrated severityNVD Advisory· Published Nov 3, 2024· Updated Nov 5, 2024

Tongda OA check_seal.php sql injection

CVE-2024-10731

Description

A vulnerability, which was classified as critical, was found in Tongda OA up to 11.10. Affected is an unknown function of the file /pda/appcenter/check_seal.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Affected products

2
  • Cnoa/Oallm-fuzzy
    Range: <=11.10
  • Tongda/OAv5
    Range: 11.0

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.