CNNVD-202508-3161 Information

CNNVD ID

CNNVD-202508-3161

CVE-2024-13979

  • CNNVD Published: 2025-08-27

Description (Chinese)

ShengQiao Technology St. Joe ERP System是中国圣乔科技(ShengQiao Technology)公司的一款企业级管理软件。 ShengQiao Technology St. Joe ERP System存在安全漏洞,该漏洞源于输入清理不足,可能导致SQL注入攻击。

Description (English)

ShengQiao Technology St. Joe ERP Systems is an enterprise-level management software for ShengQiao Technology in China. ShengQiao Technology St. Joe ERP Systems has a security loophole, which stems from inadequate input clean-up and could lead to an SQL injection attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

圣乔科技

Published

2025-08-27

Last Modified

2026-02-24

References

https://www.vulncheck.com/advisories/st-joes-erp-system-sqli https://github.com/adysec/POC/blob/main/wpoc/%E5%9C%A3%E4%B9%94ERP/%E5%9C%A3%E4%B9%94ERP%E7%B3%BB%E7%BB%9FSingleRowQueryConvertor%E5%AD%98%E5%9C%A8SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md https://en.fofa.info/result?qbase64=5Zyj5LmURVJQ57O757uf https://blog.csdn.net/qq_41904294/article/details/144240396 https://nvd.nist.gov/vuln/detail/CVE-2024-13979

Share on: