RULE(RULE ID:330623)

Rule General Information
Release Date: 2020-08-19
Rule Name: Tongda OA Directory Traversal Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Tongda OA is an office system developed by Beijing Tongda Xinke Technology Co., Ltd. There is a directory traversal vulnerability in Tongda OA V11.6. Successful exploitation of this vulnerability will delete the PHP files to bypass OA verification.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows
Reference:
Solutions
There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.