'; } else{ echo ''; } echo '
|
|||
Rule General Information |
---|
Release Date: | 2025-09-16 | |
Rule Name: | Fumasoft LicManage System GetIcon.aspx SQL Injection Vulnerability | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Fu Meng Software is a well-known foreign trade SaaS service provider in China, and also a professional foreign trade industry solution provider. The GetIcon.aspx interface of the Fumasoft LicManage System has an SQL injection vulnerability. Besides taking advantage of this vulnerability to obtain information in the database, attackers can even write Trojans into the server under high privileges to further gain system privileges of the server. | |
Impact: | An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully. | |
Affected OS: | Windows, Linux, Others | |
Reference: | ||
Solutions |
---|
Please contact the software vendor to update the software patch. |