First published: Sun Nov 03 2024(Updated: )
A vulnerability, which was classified as critical, was found in Tongda OA up to 11.10. Affected is an unknown function of the file /pda/appcenter/check_seal.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tongda OA | >=11.2<=11.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-10731 is classified as critical.
CVE-2024-10731 is a SQL injection vulnerability.
To fix CVE-2024-10731, users should upgrade to a version of Tongda OA higher than 11.10.
Yes, CVE-2024-10731 can be exploited remotely.
CVE-2024-10731 affects the file /pda/appcenter/check_seal.php in Tongda OA versions up to 11.10.