Metrics
Affected Vendors & Products
Mon, 12 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 11 May 2025 05:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Seeyon Zhiyuan OA Web Application System 8.1 SP2. It has been rated as critical. Affected by this issue is the function postData of the file ROOT\WEB-INF\classes\com\ours\www\ehr\salary\service\data\EhrSalaryPayrollServiceImpl.class of the component Beetl Template Handler. The manipulation of the argument payrollId leads to code injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
Title | Seeyon Zhiyuan OA Web Application System Beetl Template EhrSalaryPayrollServiceImpl.class postData code injection | |
Weaknesses | CWE-74 CWE-94 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-11T05:31:06.887Z
Updated: 2025-05-12T13:50:33.139Z
Reserved: 2025-05-10T05:42:30.663Z
Link: CVE-2025-4531

Updated: 2025-05-12T13:50:17.614Z

Status : Awaiting Analysis
Published: 2025-05-11T06:15:15.707
Modified: 2025-05-12T17:32:32.760
Link: CVE-2025-4531

No data.