VYPR

OA

by Jiusi

CVEs (2)

  • CVE-2025-13249MedNov 16, 2025
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in Jiusi OA up to 20251102. This affects an unknown function of the file /OfficeServer?isAjaxDownloadTemplate=false of the component OfficeServer Interface. Such manipulation of the argument FileData leads to unrestricted upload. The…

  • CVE-2022-3467MedOct 12, 2022
    risk 0.36cvss 5.5epss 0.01

    A vulnerability classified as critical was found in Jiusi OA. Affected by this vulnerability is an unknown functionality of the file /jsoa/hntdCustomDesktopActionContent. The manipulation of the argument inforid leads to sql injection. The exploit has been disclosed to the…