RULE(RULE ID:336889)

Rule General Information
Release Date: 2022-07-31
Rule Name: Landray OA treexml.tmpl Remote Code Execution Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Landray is a digital office service provider located in Shenzhen. Its OA products have a remote code execution vulnerability that allows an attacker to construct elaborate requests to execute malicious code on the server to gain server permissions.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.