References https://nvd.nist.gov/vuln/detail/CVE-2025-8470 https://www.cvedetails.com/cve/CVE-2025-8470/ https://vulnerability.circl.lu/vuln/cve-2025-8470 https://dbugs.ptsecurity.com/vulnerability/PT-2025-31741 https://cve.imfht.com/detail/CVE-2025-8470 https://www.nsfocus.net/vulndb/130458 https://devhub.checkmarx.com/cve-details/cve-2025-8470/
Related Vulnerabilities中成科信票务管理系统 /SystemManager/TicketSystem/ReturnTicketPlance.ashx SQL 注入漏洞中成科信票务管理系统 /SystemManager/Planetarium/ReserveTicketManagerPlane.ashx SQL 注入漏洞PoCCVE-2026-3576: Planyo Online Reservation System <= 3.0 - Arbitrary File Read深信服运维安全管理系统 /fort/system/safeCert;help/upload_safe_cert 命令执行漏洞PoCCVE-2026-15094: WP Hotel Booking <= 2.3.2 - Cross-Site ScriptingPoCzoneminder-system-log: ZoneMinder System Log - Detect用友U8cloud /u8cloud/extsystem/dst SQL 注入漏洞天锐绿盾审批系统 /trwfe/login.jsp/..;/thirdSystemConfig/findSingConfigPage.do SQL 注入漏洞关于U8cloud2.6-5.1sp版本extsystem.dst接口存在SQL注入漏洞的安全公告FOSSBilling /system/string_render 命令执行漏洞(CVE-2026-28496)Kubernetes Dashboard /api/v1/namespaces/kube-system/secrets/kubernetes-dashboard-certs 权限绕过漏洞(CVE-2018-18264)Campcodes Online Loan Management System /ajax.php SQL 注入漏洞(CVE-2025-9744)PoCCVE-2026-34413: Xerte Online Toolkits <= 3.15 - Remote Code Execution