VYPR

e-Face General Management Platform

by Hanwang

CVEs (2)

  • CVE-2026-14737Jul 5, 2026
    risk 0.00cvss epss 0.00

    A vulnerability was identified in Hanwang e-Face General Management Platform 6.3.5.4. This impacts an unknown function of the file /sysAuthStr/querySysAuthStr.do. The manipulation of the argument order leads to sql injection. It is possible to initiate the attack remotely. The…

  • CVE-2026-13547Jun 29, 2026
    risk 0.00cvss epss 0.00

    A vulnerability was determined in Hanwang e-Face General Management Platform 6.3.5.4. This issue affects some unknown processing of the file /manage/resourceUpload/upload.do. Executing a manipulation of the argument File can lead to unrestricted upload. The attack may be…