HIGH
SQL Injection in Xinhu OA System v1.8.3 allows remote attackers to obtain sensitive information by injecting arbitrary commands into the "typeid" variable of the "createfolderAjax" function in the "mode_worcAction.php" component
Published Apr 28, 2021
7.5
HIGHCVSS 3.1
EPSS 1.52%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.