CVE-2024-35090 |
Description: J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysUreportFileMapper.xml.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35086 |
Description: J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in BpmTaskFromMapper.xml .
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35085 |
Description: J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in ProcessDefinitionMapper.xml.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35084 |
Description: J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysMsgPushMapper.xml.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35083 |
Description: J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysLoginInfoMapper.xml.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35082 |
Description: J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysOperLogMapper.xml.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35081 |
Description: LuckyFrameWeb v3.5.2 was discovered to contain an arbitrary file deletion vulnerability via the fileName parameter in the fileDownload method.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35080 |
Description: An arbitrary file upload vulnerability in the gok4 method of inxedu v2024.4 allows attackers to execute arbitrary code via uploading a crafted .jsp file.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35079 |
Description: An arbitrary file upload vulnerability in the uploadAudio method of inxedu v2024.4 allows attackers to execute arbitrary code via uploading a crafted .jsp file.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|
CVE-2024-35050 |
Description: An issue in SurveyKing v1.3.1 allows attackers to escalate privileges via re-using the session ID of a user that was deleted by an Admin.
EPSS Score: 0.04%
February 14th, 2025 (5 months ago)
|