← Back

CVE-2019-1010201

nvd nist
Published: Jul 23, 2019Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Jeesite 1.2.7 is affected by: SQL Injection. The impact is: sensitive information disclosure. The component is: updateProcInsIdByBusinessId() function in src/main/java/com.thinkgem.jeesite/modules/act/ActDao.java has SQL Injection vulnerability. The attack vector is: network connectivity,authenticated. The fixed version is: 4.0 and later.

Affected (1)

Products: Jeesite: Jeesite
1 product
Jeesite
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.2.7

Timeline

No history available yet.