SQL Injection vulnerability in rainrocka xinhu v.2.6.5 and before allows a remote attacker to execute arbitrary code via the inputAction.php file and the saveAjax function
Metrics
Affected Vendors & Products
References
History
Tue, 01 Apr 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Rockoa
Rockoa xinhu |
|
| CPEs | cpe:2.3:a:rockoa:xinhu:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Rockoa
Rockoa xinhu |
Mon, 31 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 19 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
cvssV3_1
|
Tue, 18 Mar 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SQL Injection vulnerability in rainrocka xinhu v.2.6.5 and before allows a remote attacker to execute arbitrary code via the inputAction.php file and the saveAjax function | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-03-18T00:00:00.000Z
Updated: 2025-03-31T14:58:46.707Z
Reserved: 2025-01-09T00:00:00.000Z
Link: CVE-2024-57151
Updated: 2025-03-19T14:10:35.497Z
Status : Analyzed
Published: 2025-03-18T21:15:31.663
Modified: 2025-04-01T20:37:14.433
Link: CVE-2024-57151
No data.