CVE-2023-1741
- EPSS 0.05%
- Veröffentlicht 30.03.2023 22:15:06
- Zuletzt bearbeitet 21.11.2024 07:39:48
A vulnerability was found in jeecg-boot 3.5.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file SysDictMapper.java of the component Sleep Command Handler. The manipulation leads to sql inject...
CVE-2023-1454
- EPSS 93.34%
- Veröffentlicht 17.03.2023 07:15:13
- Zuletzt bearbeitet 02.01.2026 19:31:16
A vulnerability classified as critical has been found in jeecg-boot 3.5.0. This affects an unknown part of the file jmreport/qurestSql. The manipulation of the argument apiSelectId leads to sql injection. It is possible to initiate the attack remotel...
CVE-2022-47105
- EPSS 1.05%
- Veröffentlicht 19.01.2023 16:15:11
- Zuletzt bearbeitet 03.04.2025 18:15:42
Jeecg-boot v3.4.4 was discovered to contain a SQL injection vulnerability via the component /sys/dict/queryTableData.
CVE-2022-45210
- EPSS 0.18%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:54
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/deleteRecycleBin.
CVE-2022-45208
- EPSS 0.18%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:53
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/putRecycleBin.
CVE-2022-45207
- EPSS 0.98%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:53
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString.
CVE-2022-45206
- EPSS 0.27%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:53
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/duplicate/check.
CVE-2022-45205
- EPSS 0.53%
- Veröffentlicht 25.11.2022 17:15:11
- Zuletzt bearbeitet 29.04.2025 15:15:53
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/dict/queryTableData.
CVE-2022-2647
- EPSS 0.36%
- Veröffentlicht 04.08.2022 09:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:26
A vulnerability was found in jeecg-boot. It has been declared as critical. This vulnerability affects unknown code of the file /api/. The manipulation of the argument file leads to unrestricted upload. The attack can be initiated remotely. The exploi...
CVE-2021-44585
- EPSS 0.35%
- Veröffentlicht 10.03.2022 21:15:14
- Zuletzt bearbeitet 21.11.2024 06:31:14
A Cross Site Scripting (XSS) vulnerabilitiy exits in jeecg-boot 3.0 in /jeecg-boot/jmreport/view with a mouseover event.