CVE-2026-1414
- EPSS 4.45%
- Veröffentlicht 26.01.2026 02:02:06
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was determined in Sangfor Operation and Maintenance Security Management System up to 3.0.12. This impacts the function getInformation of the file /equipment/get_Information of the component HTTP POST Request Handler. Executing a manip...
CVE-2026-1413
- EPSS 2.8%
- Veröffentlicht 26.01.2026 01:32:06
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was found in Sangfor Operation and Maintenance Security Management System up to 3.0.12. This affects the function portValidate of the file /fort/ip_and_port/port_validate of the component HTTP POST Request Handler. Performing a manipu...
CVE-2026-1412
- EPSS 3.95%
- Veröffentlicht 26.01.2026 01:15:49
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability has been found in Sangfor Operation and Maintenance Security Management System up to 3.0.12. The impacted element is an unknown function of the file /fort/audit/get_clip_img of the component HTTP POST Request Handler. Such manipulatio...
CVE-2026-1325
- EPSS 0.52%
- Veröffentlicht 22.01.2026 13:02:11
- Zuletzt bearbeitet 30.01.2026 16:37:09
A security flaw has been discovered in Sangfor Operation and Maintenance Security Management System up to 3.0.12. This affects the function edit_pwd_mall of the file /fort/login/edit_pwd_mall. The manipulation of the argument flag results in weak pas...
CVE-2026-1324
- EPSS 6.44%
- Veröffentlicht 22.01.2026 13:02:08
- Zuletzt bearbeitet 30.01.2026 16:34:58
A vulnerability was identified in Sangfor Operation and Maintenance Management System up to 3.0.12. Affected by this issue is the function SessionController of the file /isomp-protocol/protocol/session of the component SSH Protocol Handler. The manip...
CVE-2025-15503
- EPSS 1.91%
- Veröffentlicht 10.01.2026 09:15:49
- Zuletzt bearbeitet 29.04.2026 01:00:01
A security flaw has been discovered in Sangfor Operation and Maintenance Management System up to 3.0.8. The impacted element is an unknown function of the file /fort/trust/version/common/common.jsp. Performing a manipulation of the argument File resu...
CVE-2025-15502
- EPSS 5.58%
- Veröffentlicht 10.01.2026 08:15:48
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was identified in Sangfor Operation and Maintenance Management System up to 3.0.8. The affected element is the function SessionController of the file /isomp-protocol/protocol/session. Such manipulation of the argument Hostname leads t...
CVE-2025-15501
- EPSS 6.37%
- Veröffentlicht 09.01.2026 22:32:05
- Zuletzt bearbeitet 22.01.2026 19:36:00
A vulnerability was determined in Sangfor Operation and Maintenance Management System up to 3.0.8. Impacted is the function WriterHandle.getCmd of the file /isomp-protocol/protocol/getCmd. This manipulation of the argument sessionPath causes os comma...
CVE-2025-12916
- EPSS 4.6%
- Veröffentlicht 08.11.2025 23:32:05
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was determined in Sangfor Operation and Maintenance Security Management System 3.0. Impacted is an unknown function of the file /fort/portal_login of the component Frontend. This manipulation of the argument loginUrl causes command in...