References https://mrxn.net/jswz/JeeWMS-druid-unauth-accept.html https://www.ddpoc.com/DVB-2025-9120.html https://nvd.nist.gov/vuln/detail/CVE-2024-12347 https://vuldb.com/?id.287267 https://github.com/dycccccccc/JEEWMS/blob/main/JEEWMS%20Druid%20monitoring%20interface%20is%20not%20authorized.docx https://avd.aliyun.com/detail?id=AVD-2024-12347 https://cvefeed.io/vuln/detail/CVE-2024-12347
Related VulnerabilitiesJeeWMS cgReportController.do wm_wendubb SQL 注入漏洞Apache Druid /proxy/coordinator@ 服务器端请求伪造漏洞(CVE-2025-27888)JeeWMS /rest/../iconController.do 文件上传漏洞JeeWMS /rest/wmSttInGoodsController SQL 注入漏洞厦门四信通信科技有限公司水利信息化平台存在druid弱口令漏洞JeeWMS /rest/../cgUploadController.do 文件上传漏洞(CVE-2025-60268)JeeWMS /cgDynamGraphController.do SQL 注入漏洞JeeWMS /departController.do SQL 注入漏洞天地伟业Easy7综合管理平台druid未授权访问druid-monitor-unauth: Druid Monitor Unauth