A vulnerability was found in Tongda OA 2017 and...
Moderate severity
Unreviewed
Published
Sep 17, 2023
to the GitHub Advisory Database
•
Updated Nov 11, 2023
Description
Published by the National Vulnerability Database
Sep 17, 2023
Published to the GitHub Advisory Database
Sep 17, 2023
Last updated
Nov 11, 2023
A vulnerability was found in Tongda OA 2017 and classified as critical. Affected by this issue is some unknown functionality of the file general/hr/manage/staff_relatives/delete.php. The manipulation of the argument RELATIVES_ID leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-239864.
References