Vulnerabilities > Tongda2000 > Tongda Office Anywhere

DATE CVE VULNERABILITY TITLE RISK
2023-09-17 CVE-2023-5030 SQL Injection vulnerability in Tongda2000 Tongda Office Anywhere
A vulnerability has been found in Tongda OA up to 11.10 and classified as critical.
low complexity
tongda2000 CWE-89
8.8
2023-09-17 CVE-2023-5026 Cross-site Scripting vulnerability in Tongda2000 Tongda Office Anywhere 11.10
A vulnerability classified as problematic has been found in Tongda OA 11.10.
network
low complexity
tongda2000 CWE-79
6.1
2023-09-17 CVE-2023-5023 SQL Injection vulnerability in Tongda2000 Tongda Office Anywhere 2017
A vulnerability was found in Tongda OA 2017 and classified as critical.
low complexity
tongda2000 CWE-89
8.8
2023-09-17 CVE-2023-5019 SQL Injection vulnerability in Tongda2000 Tongda Office Anywhere
A vulnerability classified as critical was found in Tongda OA.
network
low complexity
tongda2000 CWE-89
critical
9.8
2023-08-05 CVE-2023-4166 SQL Injection vulnerability in Tongda2000 Tongda Office Anywhere 11.10
A vulnerability has been found in Tongda OA and classified as critical.
network
low complexity
tongda2000 CWE-89
critical
9.8
2023-08-05 CVE-2023-4165 SQL Injection vulnerability in Tongda2000 Tongda Office Anywhere 11.10
A vulnerability, which was classified as critical, was found in Tongda OA.
network
low complexity
tongda2000 CWE-89
critical
9.8
2023-05-16 CVE-2023-2738 Unrestricted Upload of File with Dangerous Type vulnerability in Tongda2000 Tongda Office Anywhere 11.10
A vulnerability classified as critical has been found in Tongda OA 11.10.
network
low complexity
tongda2000 CWE-434
critical
9.8
2022-02-14 CVE-2022-23902 SQL Injection vulnerability in Tongda2000 Tongda Office Anywhere 11.10
Tongda2000 v11.10 was discovered to contain a SQL injection vulnerability in export_data.php via the d_name parameter.
network
low complexity
tongda2000 CWE-89
critical
9.8
2022-02-14 CVE-2022-24206 SQL Injection vulnerability in Tongda2000 Tongda Office Anywhere 11.10
Tongda2000 v11.10 was discovered to contain a SQL injection vulnerability in /mobile_seal/get_seal.php via the DEVICE_LIST parameter.
network
low complexity
tongda2000 CWE-89
critical
9.8