VYPR

Enterprise Resource Management System

by Isellerpal

CVEs (2)

  • CVE-2024-42676HigAug 15, 2024
    risk 0.57cvss 8.8epss 0.01

    File Upload vulnerability in Huizhi enterprise resource management system v.1.0 and before allows a remote attacker to execute arbitrary code via the /nssys/common/Upload. Aspx? Action=DNPageAjaxPostBack component

  • CVE-2024-42677MedAug 15, 2024
    risk 0.36cvss 5.5epss 0.00

    An issue in Huizhi enterprise resource management system v.1.0 and before allows a local attacker to obtain sensitive information via the /nssys/common/filehandle. Aspx component