CVE-2023-54400

CVE-2023-54400 published: Fumasoft Fumeng Cloud contains a SQL injection vulnerability in the AjaxMethod.ashx endpoint that allows unauthenticated remote attackers to inject arbitrary SQL through the Name parameter of the getEmpByname action without any authentication. Attackers can...

View full NVD advisory → ← Back to CVE watch