RULE(RULE ID:338999)

Rule General Information
Release Date: 2025-06-04
Rule Name: Weaver E-Cology jqueryFileTree.jsp Directory Traversal Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Weaver E-cology is a high-end collaborative office system designed for large enterprises and groups. It provides comprehensive functions such as process management, knowledge management, and project management. It supports multiple organizations, departments, and users, helping enterprises achieve efficient collaboration and digital transformation. There is a directory traversal vulnerability in the jqueryFileTree.jsp of Weaver E-cology. Attackers can exploit this vulnerability to obtain sensitive data, tamper with configuration files, or further control the server.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.