CVE-2024-37777: Input Validation
Published Aug 27, 2025
·Updated
O2OA v9.0.3 was discovered to contain a remote code execution (RCE) vulnerability via the mainOutput() function.
Affected Software
2 affected components
O2OA O2OA
Zoneland O2oa=9.0.3
Event History
Aug 27, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-37777?
CVE-2024-37777 is classified as a critical severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2024-37777?
To fix CVE-2024-37777, upgrade O2OA to the latest version provided by the vendor that addresses the RCE vulnerability.
3
What are the potential impacts of CVE-2024-37777?
The potential impacts of CVE-2024-37777 include unauthorized remote access to the system and execution of malicious code.
4
What versions are affected by CVE-2024-37777?
CVE-2024-37777 affects O2OA version 9.0.3 and possibly earlier versions.
5
How can I identify if my system is vulnerable to CVE-2024-37777?
You can identify if your system is vulnerable to CVE-2024-37777 by checking the version of O2OA you are currently using against the specified affected version.