Vulnerabilities > Tongda2000 > Office Anywhere > 11.7

DATE CVE VULNERABILITY TITLE RISK
2024-02-16 CVE-2024-25320 Unspecified vulnerability in Tongda2000 Office Anywhere
Tongda OA v2017 and up to v11.9 was discovered to contain a SQL injection vulnerability via the $AFF_ID parameter at /affair/delete.php.
network
low complexity
tongda2000
critical
9.8
2024-01-26 CVE-2024-0938 SQL Injection vulnerability in Tongda2000 Office Anywhere
A vulnerability, which was classified as critical, was found in Tongda OA 2017 up to 11.9.
network
low complexity
tongda2000 CWE-89
critical
9.8
2023-12-21 CVE-2023-7022 SQL Injection vulnerability in Tongda2000 Office Anywhere
A vulnerability was found in Tongda OA 2017 up to 11.9.
network
low complexity
tongda2000 CWE-89
critical
9.8
2023-12-21 CVE-2023-7023 SQL Injection vulnerability in Tongda2000 Office Anywhere
A vulnerability was found in Tongda OA 2017 up to 11.9.
network
low complexity
tongda2000 CWE-89
critical
9.8
2023-12-21 CVE-2023-7020 SQL Injection vulnerability in Tongda2000 Office Anywhere
A vulnerability was found in Tongda OA 2017 up to 11.9 and classified as critical.
network
low complexity
tongda2000 CWE-89
critical
9.8