CVE-2024-44756
- EPSS 0.14%
- Veröffentlicht 18.11.2024 17:15:11
- Zuletzt bearbeitet 01.10.2025 16:01:52
NUS-M9 ERP Management Software v3.0.0 was discovered to contain a SQL injection vulnerability via the usercode parameter at /UserWH/checkLogin.
CVE-2024-44757
- EPSS 0.13%
- Veröffentlicht 18.11.2024 17:15:11
- Zuletzt bearbeitet 01.10.2025 16:01:09
An arbitrary file download vulnerability in the component /Basics/DownloadInpFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information via a crafted interface request.
CVE-2024-44758
- EPSS 0.37%
- Veröffentlicht 15.11.2024 21:15:09
- Zuletzt bearbeitet 01.10.2025 16:02:36
An arbitrary file upload vulnerability in the component /Production/UploadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to execute arbitrary code via uploading crafted files.
CVE-2024-44759
- EPSS 0.27%
- Veröffentlicht 15.11.2024 20:15:20
- Zuletzt bearbeitet 01.10.2025 16:03:04
An arbitrary file download vulnerability in the component /Doc/DownloadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information via a crafted interface request.