CVE-2023-34659
- EPSS 91.2%
- Veröffentlicht 16.06.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:07:30
jeecg-boot 3.5.0 and 3.5.1 have a SQL injection vulnerability the id parameter of the /jeecg-boot/jmreport/show interface.
CVE-2023-1784
- EPSS 0.13%
- Veröffentlicht 31.03.2023 20:15:07
- Zuletzt bearbeitet 21.11.2024 07:39:53
A vulnerability was found in jeecg-boot 3.5.0 and classified as critical. This issue affects some unknown processing of the component API Documentation. The manipulation leads to improper authentication. The attack may be initiated remotely. The expl...
CVE-2023-1741
- EPSS 0.37%
- Veröffentlicht 30.03.2023 22:15:06
- Zuletzt bearbeitet 21.11.2024 07:39:48
A vulnerability was found in jeecg-boot 3.5.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file SysDictMapper.java of the component Sleep Command Handler. The manipulation leads to sql inject...
CVE-2023-1454
- EPSS 93.4%
- Veröffentlicht 17.03.2023 07:15:13
- Zuletzt bearbeitet 02.01.2026 19:31:16
A vulnerability classified as critical has been found in jeecg-boot 3.5.0. This affects an unknown part of the file jmreport/qurestSql. The manipulation of the argument apiSelectId leads to sql injection. It is possible to initiate the attack remotel...
CVE-2022-47105
- EPSS 1.05%
- Veröffentlicht 19.01.2023 16:15:11
- Zuletzt bearbeitet 03.04.2025 18:15:42
Jeecg-boot v3.4.4 was discovered to contain a SQL injection vulnerability via the component /sys/dict/queryTableData.
CVE-2022-45210
- EPSS 0.18%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:54
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/deleteRecycleBin.
CVE-2022-45208
- EPSS 0.18%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:53
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/putRecycleBin.
CVE-2022-45207
- EPSS 0.98%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:53
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString.
CVE-2022-45206
- EPSS 0.27%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:53
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/duplicate/check.
CVE-2022-45205
- EPSS 0.53%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:53
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/dict/queryTableData.