RULE(RULE ID:330911)

Rule General Information
Release Date: 2020-08-25
Rule Name: Tongda OA Software Forged Login Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Tongda is a high-tech enterprise whose main business is management software development, implementation, service and consulting. In the v11 version, there are arbitrary user forgery and unauthorized access vulnerabilities. A remote attacker can forge any user login through a carefully constructed request packet. Affected version: Tongda OA version below 11.5.200417.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows
Reference:
Solutions
There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.