References https://access.redhat.com/security/cve/cve-2023-3972 https://nvd.nist.gov/vuln/detail/CVE-2023-3972 https://bugzilla.redhat.com/show_bug.cgi?id=2227027 https://access.redhat.com/errata/RHSA-2023:6264 https://cve.imfht.com/detail/CVE-2023-3972 https://zone.ci/aliyun/ali_nvd/15911.html https://www.nsfocus.net/vulndb/86830 https://www.tenablecloud.cn/plugins/nessus/184201 https://mondoo.com/vulnerability-intelligence/vulnerability/CVE-2023-3972 https://www.cve.org/CVERecord?id=CVE-2023-3972
Related Vulnerabilities北京亿赛通科技发展有限责任公司电子文档安全管理系统CDGServer3-client存在前台sql漏洞PoCCVE-2026-57219: RabbitMQ Management - OAuth 2 Client Secret Disclosure智邦国际ERP /SYSN/json/pcclient/GetAllPrintTemplate.ashx SQL 注入漏洞AIClient2API /api/login 默认口令漏洞福建科立讯通信指挥调度管理平台 /api/client/fax/send_fax.php 命令执行漏洞PoCCVE-2026-33439: OpenAM <= 16.0.5 - Pre-Auth RCE via jato.clientSession DeserializationPoC孚盟云 CRM /m/Dingding/Card/ClientNameCard.aspx SQL 注入漏洞Apache CloudStack /client/api/ 默认口令漏洞PoCCVE-2026-21643: Fortinet FortiClientEMS 7.4.4 - SQL InjectionPoCCVE-2026-35616: FortiClient EMS - Authentication Bypass天锐绿盘云文档安全管理平台/lddsm/service/../ldfbsnodeDocumentController/restorMachineToClient.do 命令执行漏洞PoC福建科立讯通信指挥调度平台 /api/client/event/phoneeventlist.php SQL 注入漏洞PoCrustdesk-webclient-default-login: RustDesk Web Client - Default login