RULE(RULE ID:338146)

Rule General Information
Release Date: 2024-06-18
Rule Name: Weaver E-cology8 SptmForPortalThumbnail.jsp Arbitrary File Read Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Weaver E-cology8 is an enterprise-level digital office platform that provides comprehensive features for business process management, collaborative work, and knowledge management to boost the operational efficiency and information construction of an enterprise. The presence of arbitrary file reading vulnerabilities in Weaver E-cology8 may enable attackers to illegally access and download sensitive files from the server.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.