SQL injection vulnerability in Beijing Guoju Information Technology Co., Ltd JeecgBoot v.3.7.2 allows a remote attacker to obtain sensitive information via the getTotalData component.
References
| Link | Resource |
|---|---|
| https://github.com/jeecgboot/JeecgBoot/issues/7665 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
No history.
Information
Published : 2025-02-07 22:15
Updated : 2025-09-29 18:14
NVD link : CVE-2024-57606
Mitre link : CVE-2024-57606
CVE.ORG link : CVE-2024-57606
JSON object : View
Products Affected
guojusoft
- jeecgboot
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
