Exploit Database

150,152 exploits tracked across all sources.

Sort: Activity Stars
CVE-2025-60268 WRITEUP MEDIUM
JeeWMS 20250820 - Authenticated Arbitrary File Upload and Remote Code Execution via saveFiles Function
An arbitrary file upload vulnerability exists in JeeWMS 20250820, which is caused by the lack of file checking in the saveFiles function in /jeewms/cgUploadController.do. An attacker with normal privileges was able to upload a malicious file that would lead to remote code execution.
CVSS 6.5
CVE-2025-5390 WRITEUP MEDIUM
JeeWMS < 2025-05-04 - Improper Access Control in File Handler
A vulnerability, which was classified as critical, was found in JeeWMS up to 20250504. This affects the function filedeal of the file /systemController/filedeal.do of the component File Handler. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. This product does not use versioning. This is why information about affected and unaffected releases are unavailable.
CVSS 6.3
CVE-2025-5389 WRITEUP MEDIUM
JeeWMS < 2025-05-04 - Improper Access Control in File Handler
A vulnerability, which was classified as critical, has been found in JeeWMS up to 20250504. Affected by this issue is the function dogenerateOne2Many of the file /generateController.do?dogenerateOne2Many of the component File Handler. The manipulation leads to improper access controls. The attack may be launched remotely. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available.
CVSS 6.3
CVE-2025-5388 WRITEUP MEDIUM
JeeWMS < 2025-05-04 - SQL Injection via /generateController.do?dogenerate
A vulnerability classified as critical was found in JeeWMS up to 20250504. Affected by this vulnerability is the function dogenerate of the file /generateController.do?dogenerate. The manipulation leads to sql injection. The attack can be launched remotely. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available.
CVSS 6.3
CVE-2025-5387 WRITEUP MEDIUM
JeeWMS < 2025-05-04 - Improper Access Control in File Handler
A vulnerability classified as critical has been found in JeeWMS up to 20250504. Affected is the function dogenerate of the file /generateController.do?dogenerate of the component File Handler. The manipulation leads to improper access controls. It is possible to launch the attack remotely. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.
CVSS 6.3
CVE-2025-5386 WRITEUP MEDIUM
JeeWMS < 2025-05-04 - SQL Injection via transEditor Function
A vulnerability was found in JeeWMS up to 20250504. It has been rated as critical. This issue affects the function transEditor of the file /cgformTransController.do?transEditor. The manipulation leads to sql injection. The attack may be initiated remotely. This product does not use versioning. This is why information about affected and unaffected releases are unavailable.
CVSS 6.3
CVE-2025-5385 WRITEUP MEDIUM
JeeWMS < 2025-05-04 - Path Traversal via cgformTemplateController.do?doAdd
A vulnerability was found in JeeWMS up to 20250504. It has been declared as critical. This vulnerability affects the function doAdd of the file /cgformTemplateController.do?doAdd. The manipulation leads to path traversal. The attack can be initiated remotely. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available.
CVSS 6.3
CVE-2025-5384 WRITEUP MEDIUM
JeeWMS < 2025-05-04 - SQL Injection via CgAutoListController
A vulnerability was found in JeeWMS up to 20250504. It has been classified as critical. This affects the function CgAutoListController of the file /cgAutoListController.do?datagrid. The manipulation leads to sql injection. It is possible to initiate the attack remotely. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available.
CVSS 6.3
CVE-2025-50901 WRITEUP CRITICAL
JeeWMS 771e4f5d0c01ffdeae1671be4cf102b73a3fe644 - Authentication Bypass and Arbitrary File Read
JeeWMS 771e4f5d0c01ffdeae1671be4cf102b73a3fe644 (2025-05-19) contains incorrect authentication bypass vulnerability, which can lead to arbitrary file reading.
CVSS 9.8
CVE-2025-0392 WRITEUP MEDIUM
Guangzhou Huayi Intelligent Technology Jeewms < 2025-01-01 - SQL Injection via datagridGraph Function
A vulnerability, which was classified as critical, was found in Guangzhou Huayi Intelligent Technology Jeewms up to 20241229. Affected is the function datagridGraph of the file /graphReportController.do. The manipulation of the argument store_code leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 20250101 is able to address this issue. It is recommended to upgrade the affected component.
CVSS 6.3
CVE-2025-0391 WRITEUP MEDIUM
Guangzhou Huayi Intelligent Technology Jeewms < 2025-01-01 - SQL Injection
A vulnerability, which was classified as critical, has been found in Guangzhou Huayi Intelligent Technology Jeewms up to 20241229. This issue affects the function saveOrUpdate of the file org/jeecgframework/web/cgform/controller/build/CgFormBuildController. java. The manipulation leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 20250101 is able to address this issue. It is recommended to upgrade the affected component.
CVSS 6.3
CVE-2025-0390 WRITEUP MEDIUM
Guangzhou Huayi Intelligent Technology Jeewms < 2025-01-01 - Path Traversal via /wmOmNoticeHController.do
A vulnerability classified as critical was found in Guangzhou Huayi Intelligent Technology Jeewms up to 20241229. This vulnerability affects unknown code of the file /wmOmNoticeHController.do. The manipulation leads to path traversal: '../filedir'. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 20250101 is able to address this issue. It is recommended to upgrade the affected component.
CVSS 5.3
CVE-2024-57761 WRITEUP HIGH
JeeWMS < 2025-01-01 - Arbitrary File Upload via parserXML() Method
An arbitrary file upload vulnerability in the parserXML() method of JeeWMS before v2025.01.01 allows attackers to execute arbitrary code via uploading a crafted file.
CVSS 8.1
CVE-2024-57760 WRITEUP MEDIUM
jeewms < 2025.01.01 - SQL Injection via ReportId Parameter
JeeWMS before v2025.01.01 was discovered to contain a SQL injection vulnerability via the ReportId parameter at /core/CGReportDao.java.
CVSS 6.5
CVE-2024-57757 WRITEUP HIGH
jeewms < 2025.01.01 - Missing Authorization in AuthInterceptor
JeeWMS before v2025.01.01 was discovered to contain a permission bypass in the component /interceptors/AuthInterceptor.cava.
CVSS 7.5
CVE-2024-53499 WRITEUP CRITICAL
Jeewms v3.7 - SQL Injection via CgReportController API
Jeewms v3.7 was discovered to contain a SQL injection vulnerability via the CgReportController API.
CVSS 9.8
CVE-2024-27765 WRITEUP HIGH
jeewms < 3.7 - Path Traversal via cgformTemplateController
Directory Traversal vulnerability in Jeewms v.3.7 and before allows a remote attacker to obtain sensitive information via the cgformTemplateController component.
CVSS 7.5
CVE-2024-27764 WRITEUP CRITICAL
jeewms < 3.7 - Path Traversal via AuthInterceptor Component
An issue in Jeewms v.3.7 and before allows a remote attacker to escalate privileges via the AuthInterceptor component.
CVSS 9.8
CVE-2024-11251 WRITEUP MEDIUM
Jeewms < 2024-11-08 - SQL Injection via cgReportController.do begin_date Parameter
A vulnerability was found in erzhongxmu Jeewms up to 20241108. It has been rated as critical. This issue affects some unknown processing of the file cgReportController.do of the component AuthInterceptor. The manipulation of the argument begin_date leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. Other parameters might be affected as well.
CVSS 6.3
CVE-2025-70311 WRITEUP MEDIUM
JEEWMS 1.0 - SQL Injection via id1 and id2 Parameters
JEEWMS 1.0 is vulnerable to SQL Injection. Attackers can inject malicious SQL statements through the id1 and id2 parameters in the /systemControl.do interface for attack.
CVSS 6.5
CVE-2026-2536 WRITEUP MEDIUM
opencc JFlow <= 20260129 - XML External Entity Injection via File Argument in Imp_Done Function
A vulnerability was determined in opencc JFlow up to 20260129. This affects the function Imp_Done of the file src/main/java/bp/wf/httphandler/WF_Admin_AttrFlow.java of the component Workflow Engine. This manipulation of the argument File causes xml external entity reference. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.
CVSS 6.3
CVE-2026-2536 WRITEUP MEDIUM
opencc JFlow <= 20260129 - XML External Entity Injection via File Argument in Imp_Done Function
A vulnerability was determined in opencc JFlow up to 20260129. This affects the function Imp_Done of the file src/main/java/bp/wf/httphandler/WF_Admin_AttrFlow.java of the component Workflow Engine. This manipulation of the argument File causes xml external entity reference. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.
CVSS 6.3
CVE-2024-52786 WRITEUP CRITICAL
Anji-plus AJ-Report <1.4.2 - Auth Bypass
An authentication bypass vulnerability in anji-plus AJ-Report up to v1.4.2 allows unauthenticated attackers to execute arbitrary code via a crafted URL.
CVSS 9.8
CVE-2024-53494 WRITEUP HIGH
SpringBootBlog v1.0.0 - Privilege Escalation
Incorrect access control in the preHandle function of SpringBootBlog v1.0.0 allows attackers to access sensitive components without authentication.
CVSS 7.5
CVE-2024-53496 WRITEUP CRITICAL
my-site 1.0.2.RELEASE - Unauthenticated Improper Access Control in doFilter Function
Incorrect access control in the doFilter function of my-site v1.0.2.RELEASE allows attackers to access sensitive components without authentication.
CVSS 9.8