RULE(RULE ID:338665)

Rule General Information
Release Date: 2025-01-22
Rule Name: Tongda OA v11.6 insert Interface SQL Injection Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Tongda OA is a set of collaborative office automation software independently developed by Beijing Tongda Co., LTD. Tongda OA v11.6 insert interface has SQL injection vulnerability, attackers can obtain sensitive database information through the vulnerability.
Impact: An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.