References https://cve.imfht.com/detail/CVE-2025-3239 https://www.nsfocus.net/vulndb/119215 https://cve.imfht.com/detail/CVE-2025-3239?lang=en https://www.sentinelone.com/vulnerability-database/cve-2025-3239/ https://nvd.nist.gov/vuln/detail/cve-2025-3239 https://access.redhat.com/security/cve/cve-2025-3239 https://vuldb.com/?id.303265 https://vuldb.com/submit/546598
Related Vulnerabilities中成科信票务管理系统 /SystemManager/TicketSystem/ReturnTicketPlance.ashx SQL 注入漏洞中成科信票务管理系统 /SystemManager/Planetarium/ReserveTicketManagerPlane.ashx SQL 注入漏洞PoCCVE-2026-3576: Planyo Online Reservation System <= 3.0 - Arbitrary File Read深信服运维安全管理系统 /fort/system/safeCert;help/upload_safe_cert 命令执行漏洞PoCzoneminder-system-log: ZoneMinder System Log - Detect用友U8cloud /u8cloud/extsystem/dst SQL 注入漏洞天锐绿盾审批系统 /trwfe/login.jsp/..;/thirdSystemConfig/findSingConfigPage.do SQL 注入漏洞关于U8cloud2.6-5.1sp版本extsystem.dst接口存在SQL注入漏洞的安全公告FOSSBilling /system/string_render 命令执行漏洞(CVE-2026-28496)Kubernetes Dashboard /api/v1/namespaces/kube-system/secrets/kubernetes-dashboard-certs 权限绕过漏洞(CVE-2018-18264)Campcodes Online Loan Management System /ajax.php SQL 注入漏洞(CVE-2025-9744)PoCCVE-2026-34413: Xerte Online Toolkits <= 3.15 - Remote Code ExecutionPoCCVE-2021-3239: E-Learning System 1.0 - SQL Injection