'; } else{ echo ''; } echo '
|
|
|||
| Rule General Information |
|---|
| Release Date: | 2025-09-03 | |
| Rule Name: | Yonyou KSOA workslist.jsp SQL Injection Vulnerability | |
| Severity: | ||
| CVE ID: | ||
| Rule Protection Details |
|---|
| Description: | There is an SQL injection vulnerability in the Workssl.jsp of Yonyou KSOA system. Attackers can inject malicious SQL statements by constructing malicious request parameters, resulting in database information leakage, data tampering and even system privilege escalation, affecting the data security and integrity of the system. | |
| Impact: | An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully. | |
| Affected OS: | Windows, Linux, Others | |
| Reference: | ||
| Solutions |
|---|
| Please contact the software vendor to update the software patch. |