guojusoft kayıtları
guojusoft üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %66,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-434 Unrestricted Upload of File with Dangerous Type1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-23083İstismar yok | Unrestricted File Upload in JEECG v4.0 and earlier allows remote attackers to execute arbitrary code or gain privileges by uploading a craftguojusoft · jeecg · CWE-434 | Kritik9,8 | — | %3,7 | 3 May 2021 |
30İzleyin | CVE-2024-57606İstismar yok | SQL injection vulnerability in Beijing Guoju Information Technology Co., Ltd JeecgBoot v.3.7.2 allows a remote attacker to obtain sensitive guojusoft · jeecgboot · CWE-89 | Yüksek7,5 | — | %0,6 | 7 Şub 2025 |
26İzleyin | CVE-2025-51825İstismar yok | JeecgBoot versions from 3.4.3 up to 3.8.0 were found to contain a SQL injection vulnerability in the /jeecg-boot/online/cgreport/head/parseSguojusoft · jeecgboot · CWE-89 | Orta6,5 | — | %0,2 | 22 Ağu 2025 |
- CVE-2020-2308340Planlayın
Unrestricted File Upload in JEECG v4.0 and earlier allows remote attackers to execute arbitrary code or gain privileges by uploading a craft
KritikCVSS 9,8İstismar yokEPSS %4guojusoft · jeecg3 May 2021
- CVE-2024-5760630İzleyin
SQL injection vulnerability in Beijing Guoju Information Technology Co., Ltd JeecgBoot v.3.7.2 allows a remote attacker to obtain sensitive
YüksekCVSS 7,5İstismar yokEPSS %1guojusoft · jeecgboot7 Şub 2025
- CVE-2025-5182526İzleyin
JeecgBoot versions from 3.4.3 up to 3.8.0 were found to contain a SQL injection vulnerability in the /jeecg-boot/online/cgreport/head/parseS
OrtaCVSS 6,5İstismar yokEPSS %0guojusoft · jeecgboot22 Ağu 2025