Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-33194 | A vulnerability classified as critical was found in Tongda OA 11.2/11.3/11.4/11.5/11.6. This vulnerability affects unknown code of the file general/hr/setting/attendance/leave/data.php of the component Annual Leave Handler. The manipulation leads to improper authorization. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 05 Nov 2024 05:00:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tongda2000
Tongda2000 office Anywhere |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:tongda2000:office_anywhere:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tongda2000
Tongda2000 office Anywhere |
Sat, 02 Nov 2024 00:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tongda
Tongda oa 2017 |
|
| CPEs | cpe:2.3:a:tongda:oa_2017:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tongda
Tongda oa 2017 |
|
| Metrics |
ssvc
|
Fri, 01 Nov 2024 06:45:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical was found in Tongda OA 11.2/11.3/11.4/11.5/11.6. This vulnerability affects unknown code of the file general/hr/setting/attendance/leave/data.php of the component Annual Leave Handler. The manipulation leads to improper authorization. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Title | Tongda OA Annual Leave data.php improper authorization | |
| Weaknesses | CWE-285 | |
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-11-01T14:36:22.768Z
Reserved: 2024-10-31T15:24:59.187Z
Link: CVE-2024-10598
Updated: 2024-11-01T14:36:16.263Z
Status : Analyzed
Published: 2024-10-31T22:15:02.960
Modified: 2024-11-04T19:44:05.513
Link: CVE-2024-10598
No data.
OpenCVE Enrichment
No data.
EUVD