CNNVD-202601-930 Information

CNNVD ID

CNNVD-202601-930

CVE-2025-15238

  • CNNVD Published: 2026-01-05

Description (Chinese)

Quanta QOCA aim AI Medical Cloud Platform是中国台湾广达(Quanta)公司的一个人工智能医疗云计算整合平台,提供全面的AI模型开发工具,涵盖从AI开发到临床应用的全过程。 Quanta QOCA aim AI Medical Cloud Platform存在SQL注入漏洞,该漏洞源于SQL注入,可能导致经过身份验证的远程攻击者注入任意SQL命令以读取数据库内容。

Description (English)

Quanta QOCA aim AI Medical Cloud Platform, an artificial, intelligent cloud computing integration platform for Quanta, China, provides a comprehensive AI model development tool covering the entire process from AI development to clinical application. Quanta QOCA aim AI Medical Cloud Platform has an SQL injection loophole, which originates from SQL injections and may lead to the injection of any SQL command from a remote, identified assailant to access the database.

Hazard Level

High

Vulnerability Type

SQL注入

Affected Vendor

广达

Published

2026-01-05

Last Modified

2026-02-24

References

https://www.twcert.org.tw/en/cp-139-10616-cd942-2.html https://www.twcert.org.tw/tw/cp-132-10615-157a3-1.html

Patch

https://www.qoca.net/solutions/aim

Share on: