Show filters
1,840 Total Results
Displaying 241-250 of 1,840
Sort by:
Attacker Value
Unknown
CVE-2023-6607
Disclosure Date: December 08, 2023 (last updated February 25, 2025)
A vulnerability has been found in Tongda OA 2017 up to 11.10 and classified as critical. Affected by this vulnerability is an unknown functionality of the file general/wiki/cp/manage/delete.php. The manipulation of the argument TERM_ID_STR leads to sql injection. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-247243. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0
Attacker Value
Unknown
CVE-2023-31275
Disclosure Date: November 27, 2023 (last updated February 25, 2025)
An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel file. A specially crafted malformed file can lead to remote code execution. An attacker can provide a malicious file to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2023-6276
Disclosure Date: November 24, 2023 (last updated February 25, 2025)
A vulnerability classified as critical has been found in Tongda OA 2017 up to 11.9. This affects an unknown part of the file general/wiki/cp/ct/delete.php. The manipulation of the argument PROJ_ID_STR leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 11.10 is able to address this issue. It is recommended to upgrade the affected component. The identifier VDB-246105 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2023-36413
Disclosure Date: November 14, 2023 (last updated November 21, 2023)
Microsoft Office Security Feature Bypass Vulnerability
0
Attacker Value
Unknown
CVE-2023-36045
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Microsoft Office Graphics Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2023-36041
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Microsoft Excel Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2023-36037
Disclosure Date: November 14, 2023 (last updated November 21, 2023)
Microsoft Excel Security Feature Bypass Vulnerability
0
Attacker Value
Unknown
CVE-2023-6084
Disclosure Date: November 12, 2023 (last updated February 25, 2025)
A vulnerability was found in Tongda OA 2017 up to 11.9 and classified as critical. Affected by this issue is some unknown functionality of the file general/vehicle/checkup/delete.php. The manipulation of the argument VU_ID leads to sql injection. The exploit has been disclosed to the public and may be used. Upgrading to version 11.10 is able to address this issue. It is recommended to upgrade the affected component. VDB-244994 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0
Attacker Value
Unknown
CVE-2023-6054
Disclosure Date: November 09, 2023 (last updated February 25, 2025)
A vulnerability, which was classified as critical, was found in Tongda OA 2017 up to 11.9. This affects an unknown part of the file general/wiki/cp/manage/lock.php. The manipulation of the argument TERM_ID_STR leads to sql injection. The exploit has been disclosed to the public and may be used. Upgrading to version 11.10 is able to address this issue. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-244875. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0
Attacker Value
Unknown
CVE-2023-6053
Disclosure Date: November 09, 2023 (last updated February 25, 2025)
A vulnerability, which was classified as critical, has been found in Tongda OA 2017 up to 11.9. Affected by this issue is some unknown functionality of the file general/system/censor_words/manage/delete.php. The manipulation of the argument DELETE_STR leads to sql injection. The exploit has been disclosed to the public and may be used. Upgrading to version 11.10 is able to address this issue. It is recommended to upgrade the affected component. VDB-244874 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0