CVE-2024-10732

NVD Published Date: November 03, 2024 at 11:15 AM
NVD Last Modified: November 04, 2024 at 04:43 PM
Download Patch
Vulnerability ID
CVE-2024-10732
Severity
CRITICAL
Severity Score
9.8
Summary
A vulnerability has been found in Tongda OA 2017 up to 11.10 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /module/word_model/view/index.php. The manipulation of the argument query_str leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Mitigation and Patches
-
Metasploit Payload
-
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE ID
CWE-89

Recent Publish

CVE-2024-10733

KB5042207

KB5042209

CVE-2024-9896

CVE-2024-10697

KB5042211

See More ...

See SecOps Solution
in action

Schedule Demo