References https://avd.aliyun.com/detail?id=AVD-2022-33061 https://cve.imfht.com/detail/CVE-2022-33061?lang=en https://cxsecurity.com/cveshow/CVE-2022-33061 https://www.exploit-db.com/exploits/50646 https://nvd.nist.gov/vuln/detail/CVE-2022-33055 https://github.com/k0xx11/bug_report/blob/main/vendors/oretnom23/online-railway-reservation-system/SQLi-1.md https://strobes.co/vi/cve/CVE-2022-33048
Related Vulnerabilities中成科信票务管理系统 /SystemManager/TicketSystem/ReturnTicketPlance.ashx SQL 注入漏洞中成科信票务管理系统 /SystemManager/Planetarium/ReserveTicketManagerPlane.ashx SQL 注入漏洞PoCCVE-2026-3576: Planyo Online Reservation System <= 3.0 - Arbitrary File Read深信服运维安全管理系统 /fort/system/safeCert;help/upload_safe_cert 命令执行漏洞PoCzoneminder-system-log: ZoneMinder System Log - Detect用友U8cloud /u8cloud/extsystem/dst SQL 注入漏洞天锐绿盾审批系统 /trwfe/login.jsp/..;/thirdSystemConfig/findSingConfigPage.do SQL 注入漏洞关于U8cloud2.6-5.1sp版本extsystem.dst接口存在SQL注入漏洞的安全公告FOSSBilling /system/string_render 命令执行漏洞(CVE-2026-28496)Kubernetes Dashboard /api/v1/namespaces/kube-system/secrets/kubernetes-dashboard-certs 权限绕过漏洞(CVE-2018-18264)Campcodes Online Loan Management System /ajax.php SQL 注入漏洞(CVE-2025-9744)PoCCVE-2026-34413: Xerte Online Toolkits <= 3.15 - Remote Code ExecutionPoCCVE-2021-3239: E-Learning System 1.0 - SQL Injection