RULE(RULE ID:338054)

Rule General Information
Release Date: 2024-06-04
Rule Name: Tongda OA api.ali.php Remote Code Execution Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Tongda OA is a collaborative office automation system independently developed by Beijing Tongda Xinke Technology Co., Ltd. There is a remote code execution vulnerability in its interface api.ali.php. An attacker can cause remote code execution by uploading a special file.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.