Tongda OA v2017 and up to v11.9 was discovered to contain a SQL injection vulnerability via the $AFF_ID parameter at /affair/delete.php.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/cqliuke/cve/blob/main/sql.md |
![]() ![]() ![]() |
History
Wed, 19 Mar 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tongda2000
Tongda2000 office Anywhere |
|
CPEs | cpe:2.3:a:tongda2000:office_anywhere:*:*:*:*:*:*:*:* cpe:2.3:a:tongda2000:office_anywhere:2017:*:*:*:*:*:*:* |
|
Vendors & Products |
Tongda2000
Tongda2000 office Anywhere |
Tue, 20 Aug 2024 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-89 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-20T18:55:59.808Z
Reserved: 2024-02-07T00:00:00
Link: CVE-2024-25320

Updated: 2024-08-01T23:44:08.609Z

Status : Analyzed
Published: 2024-02-16T15:15:08.360
Modified: 2025-03-19T15:11:48.790
Link: CVE-2024-25320

No data.