CVE-2024-25320
16.02.2024, 15:15
Tongda OA v2017 and up to v11.9 was discovered to contain a SQL injection vulnerability via the $AFF_ID parameter at /affair/delete.php.
Vendor | Product | Version |
---|---|---|
tongda2000 | office_anywhere | 11.0 ≤ 𝑥 < 11.10 |
𝑥
= Vulnerable software versions