A vulnerability, which was classified as critical, has been found in Wanhu ezOFFICE 11.1.0. This issue affects some unknown processing of the file defaultroot/platform/bpm/work_flow/operate/wf_printnum.jsp. The manipulation of the argument recordId leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-252281 was assigned to this vulnerability.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: VulDB

Published: 2024-01-31T07:10:51.041Z

Updated: 2024-01-31T07:10:51.041Z

Reserved: 2024-01-29T07:23:53.401Z


Link: CVE-2024-1012

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2024-01-31T08:15:41.820

Modified: 2024-05-17T02:35:10.090


Link: CVE-2024-1012

JSON object: View

cve-icon Redhat Information

No data.

CWE