A vulnerability was found in hongmaple octopus 1.0. It has been classified as critical. Affected is an unknown function of the file /system/role/list. The manipulation of the argument dataScope leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The identifier of this vulnerability is VDB-251700.
History

Sat, 31 May 2025 08:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-01-22T17:31:04.653Z

Updated: 2025-05-30T14:22:37.505Z

Reserved: 2024-01-22T11:17:58.086Z

Link: CVE-2024-0784

cve-icon Vulnrichment

Updated: 2024-08-01T18:18:18.614Z

cve-icon NVD

Status : Modified

Published: 2024-01-22T18:15:20.623

Modified: 2024-11-21T08:47:21.957

Link: CVE-2024-0784

cve-icon Redhat

No data.