RULE(RULE ID:338157)

Rule General Information
Release Date: 2024-06-25
Rule Name: Yonyou NC downCourseWare Arbitrary File Read Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Yonyou NC is a high-end financial management and ERP software designed for large enterprises, offering comprehensive business solutions to support digital transformation and innovative management.Yonyou NC has an arbitrary file reading vulnerability, which attackers might exploit to access and acquire sensitive files on the system. This not only threatens the confidentiality of the data but could also lead to the leakage of corporate secrets and legal risks.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.