JEEWMS 1.0 is vulnerable to SQL Injection. Attackers can inject malicious SQL statements through the id1 and id2 parameters in the /systemControl.do interface for attack.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://gitee.com/erzhongxmu/JEEWMS |
|
History
Wed, 18 Feb 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Huayi-tec
Huayi-tec jeewms |
|
| CPEs | cpe:2.3:a:huayi-tec:jeewms:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Huayi-tec
Huayi-tec jeewms |
Wed, 11 Feb 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
cvssV3_1
|
Wed, 04 Feb 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Erzhongxmu
Erzhongxmu jeewms |
|
| Vendors & Products |
Erzhongxmu
Erzhongxmu jeewms |
Tue, 03 Feb 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | JEEWMS 1.0 is vulnerable to SQL Injection. Attackers can inject malicious SQL statements through the id1 and id2 parameters in the /systemControl.do interface for attack. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-02-03T00:00:00.000Z
Updated: 2026-02-11T17:12:52.970Z
Reserved: 2026-01-09T00:00:00.000Z
Link: CVE-2025-70311
Updated: 2026-02-11T17:12:48.429Z
Status : Analyzed
Published: 2026-02-03T18:16:17.680
Modified: 2026-02-18T16:24:07.870
Link: CVE-2025-70311
No data.