RULE(RULE ID:338449)

Rule General Information
Release Date: 2024-10-09
Rule Name: Zjhejiang Dianqilai Customer Service System Authentication Bypass Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Zhjhejiang Dianqilai Customer Service System is a software platform that provides efficient and convenient online customer service and support for enterprise users. There is a hard coding vulnerability in the customer service system of Dianqi. Attackers can use this vulnerability to directly enter the application system or management system, thereby tampering and deleting systems, web pages, and data, illegally obtaining system and user data, and even potentially causing server crashes.
Impact: An unauthorized remote attacker can bypass authentication and gain access to the application with specially crafted requests.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.