ERP 漏洞列表
共找到 200 个与 ERP 相关的漏洞
📅 加载漏洞趋势中...
- POC 2025-11-14erpnext-default-login: ERPNext - Default Login
- 2025-11-14月子会所ERP /Page/SalerManager/ashx/BindRoomListData.ashx RoomType SQL 注入漏洞
- 2025-11-14新中大ERP企业管理软件 /filesrv/NGInterface/Index SQL 注入漏洞
- 2025-11-14智邦国际ERP /SYSN/json/pcclient/RecordPrint.ashx SQL 注入漏洞
- 2025-11-07智邦国际ERP /SYSN/json/pcclient/GetPrintTemplate.ashx SQL 注入漏洞
- POC 2025-10-19普华科技-PowerPMS Reg.ashx接口存在SQL注入漏洞
- POC 2025-10-15普华科技 PowerPMS /PowerPlat/FormXml/DocFile/OfficeService.aspx 文件读取漏洞
- POC 2025-10-15普华PowerPMS /weixin3.0/Reg.ashx SQL 注入漏洞
- 2025-10-13PowerPMS File.ashx存在SQL注入漏洞
- POC 2025-10-13普华 PowerPMS Transfer.aspx 未授权访问漏洞
- 2025-10-13普华 PowerPMS File.ashx SQL注入漏洞
- 2025-10-10普华 PowerPMS download SSRF漏洞
- 2025-10-10TRUfusion Enterprise 认证绕过漏洞(CVE-2025-27223)
- 2025-10-09TRUfusion Enterprise 目录遍历漏洞(CVE-2025-27222)
- 2025-10-09TRUfusion Enterprise 未授权访问漏洞(CVE-2025-27225)
- POC 2025-09-29普华 PowerPMS Reg.ashx SQL注入漏洞
- 2025-09-28普华 PowerPMS OfficeService.aspx SQL注入漏洞
- 2025-09-10票友ERP管理系统 mail.aspx 信息泄露漏洞
- 2025-09-05票友ERP管理系统 /Parmset/mail.aspx 信息泄露漏洞
- 2025-09-05智邦国际ERP /SYSN/json/pcclient/CheckSealPwd.ashx SQL 注入漏洞
- 2025-08-29昂捷 ERP /EnjoyRMIS_WS/WS/OA/CWSOffice.asmx SQL 注入漏洞
- POC 2025-08-22明源地产ERP系统 /XmjdUI/Handle/GetErpDept.ashx SQL 注入漏洞
- 2025-08-22明源地产ERP系统 /Hkbgl/PhoneWorkflow/Business/PhoneHandler.ashx SQL 注入漏洞
- POC 2025-08-22明源云ERP系统 GetErpDept.ashx 接口存在SQL注入漏洞
- 2025-08-07Kingdee Cloud-Starry-Sky Enterprise Edition 路径遍历漏洞
- POC 2025-08-06明源云-ERP RtsReport_XmlHttp.aspx SQL注入漏洞
- 2025-08-04关于U9 cloudERP软件接口Print/PDFDirectPrint.aspx存在命令执行漏洞的安全通告
- POC 2025-08-01CVE-2024-9487: GitHub Enterprise - SAML Authentication Bypass
- POC 2025-08-01CVE-2010-0982: Joomla! Component com_cartweberp - Local File Inclusion
- POC 2025-08-01CVE-2010-1315: Joomla! Component webERPcustomer - Local File Inclusion
- POC 2025-08-01CVE-2010-1429: Red Hat JBoss Enterprise Application Platform - Sensitive Information Disclosure
- POC 2025-08-01CVE-2010-1476: Joomla! Component AlphaUserPoints 1.5.5 - Local File Inclusion
- POC 2025-08-01CVE-2012-1226: Dolibarr ERP/CRM 3.2 Alpha - Multiple Directory Traversal Vulnerabilities
- POC 2025-08-01CVE-2018-19753: Tarantella Enterprise <3.11 - Local File Inclusion
- POC 2025-08-01CVE-2018-9845: Etherpad Lite <1.6.4 - Admin Authentication Bypass
- POC 2025-08-01CVE-2019-14470: WordPress UserPro 4.9.32 - Cross-Site Scripting
- POC 2025-08-01CVE-2019-14974: SugarCRM Enterprise 9.0.0 - Cross-Site Scripting
- POC 2025-08-01CVE-2019-6793: GitLab Enterprise Edition - Server-Side Request Forgery
- POC 2025-08-01CVE-2019-7275: Optergy Proton/Enterprise Building Management System - Open Redirect
- POC 2025-08-01CVE-2020-2733: JD Edwards EnterpriseOne Tools 9.2 - Information Disclosure
- POC 2025-08-01CVE-2020-9344: Jira Subversion ALM for Enterprise <8.8.2 - Cross-Site Scripting
- POC 2025-08-01CVE-2022-29153: HashiCorp Consul/Consul Enterprise - Server-Side Request Forgery
- POC 2025-08-01CVE-2023-41265: Qlik Sense Enterprise - HTTP Request Smuggling
- POC 2025-08-01CVE-2023-41266: Qlik Sense Enterprise - Path Traversal
- POC 2025-08-01CVE-2024-0200: Github Enterprise Authenticated Remote Code Execution
- POC 2025-08-01CVE-2024-32735: CyberPower - Missing Authentication
- POC 2025-08-01CVE-2024-32736: CyberPower < v2.8.3 - SQL Injection
- POC 2025-08-01CVE-2024-32737: CyberPower - SQL Injection
- POC 2025-08-01CVE-2024-32738: CyberPower - SQL Injection
- POC 2025-08-01CVE-2024-32739: CyberPower < v2.8.3 - SQL Injection
- POC 2025-08-01CVE-2024-36991: Splunk Enterprise - Local File Inclusion
- POC 2025-08-01CVE-2024-51378: CyberPanel - Command Injection
- POC 2025-08-01CVE-2024-51567: CyberPanel v2.3.6 Pre-Auth Remote Code Execution
- POC 2025-08-01CVE-2024-51568: CyberPanel - Command Injection
- POC 2025-08-01CVE-2024-5315: Dolibarr ERP CMS `list.php` - SQL Injection
- POC 2025-08-01CVE-2025-2709: Yonyou UFIDA ERP-NC V5.0 - Cross-Site Scripting
- POC 2025-08-01CVE-2025-2710: Yonyou UFIDA ERP-NC V5.0 - Cross-Site Scripting
- POC 2025-08-01CVE-2025-2711: Yonyou UFIDA ERP-NC V5.0 - Cross-Site Scripting
- POC 2025-08-01CVE-2025-2712: Yonyou UFIDA ERP-NC V5.0 - Cross-Site Scripting
- POC 2025-08-01openerp-default-password: Openerp Default Password
- POC 2025-08-01enjoyit-erp-cwsfinancecommon-asmx-sqli: 昂捷 ERP CWSFinanceCommon.asmx SQl注入
- POC 2025-08-01huizhi-erp-filehandle-fileread: 汇智ERP接口filehandle.aspx存在任意文件读取漏洞
- POC 2025-08-01mingyuanyun-erp-apiupdate-fileupload: 明源云 ERP系统 接口管家 ApiUpdate.ashx 任意文件上传漏洞
- POC 2025-08-01mingyuanyun-erp-datarule-xmlhttp-sqli: 明源ERP-DataRule_XMLHTTP-存在SQL注入漏洞
- POC 2025-08-01piaoyou-erp-kefu-list-fileread: 票友ERP系统kefu_list存在信息泄露
- POC 2025-08-01qiwang-erp-comboxstore-rce: 企望制造 ERP comboxstore.action 远程命令执行漏洞
- POC 2025-08-01afterpay-help-csp-bypass: Content-Security-Policy Bypass - Afterpay Help
- POC 2025-08-01shengjiao-erp-downloadfile-fileread: ShengJiao ERP downloadFile.action Arbitrary File Read
- POC 2025-08-01shikongzhiyou-erp-uploadstudiofile-fileupload: 时空智友ERP系统 uploadStudioFile 任意文件上传漏洞
- POC 2025-08-01tianwen-erp-areaavatardownload-fileread: 天问物业ERP系统AreaAvatarDownLoad.aspx任意文件读取漏洞
- POC 2025-08-01tianwenwuye-erp-uploadfile-aspx-anyfile-upload: 天问物业ERP系统 uploadfile.aspx 任意文件上传漏洞
- POC 2025-08-01tutorsoft-erp-getUserImage-sqli: TUTORSOFT ERP getUserImage.ashx SQL Injection
- POC 2025-08-01yunlian-pos-erp-downloadfile-fileread: YunLian POS-ERP DownloadFile Arbitrary File Read
- POC 2025-08-01yunlian-pos-erp-zksrservice-sqli: Yunlian POS-ERP ZksrService SQL Injection
- POC 2025-08-01yunshikong-erp-file-upload: 云时空ERP文件上传
- POC 2025-08-01yunshikong-erp-sql-injection: 云时空 社会化商业ERP系统存在SQL注入漏洞
- POC 2025-08-01zbintel-erp-getpersonalsealdata-sqli: 智邦国际ERP-GetPersonalSealData.ashx存在SQL注入漏洞
- POC 2025-08-01CNVD-2020-63964: jshERP - Information Disclosure
- POC 2025-08-01CVE-2017-9965: Schneider Electric Pelco VideoXpert Enterprise 2.0 - Path Traversal
- POC 2025-08-01CVE-2019-7276: Optergy Proton/Enterprise - Unauthenticated RCE via Backdoor Console
- POC 2025-08-01CVE-2025-27222: TRUfusion Enterprise <= 7.10.4.0 - Path Traversal
- POC 2025-08-01CVE-2025-27223: TRUfusion Enterprise <= 7.10.4.0 - Authentication Bypass
- POC 2025-08-01CVE-2025-27225: TRUfusion Enterprise <= 7.10.4.0 - Admin Contact Portal
- POC 2025-08-01feiyuxing-default-login: Feiyuxing Enterprise-Level Management System - Default Login
- POC 2025-08-01google-earth-dlogin: Google Earth Enterprise Default Login
- POC 2025-08-01ibm-dcec-default-login: IBM Decision Center Enterprise Console - Default Login
- POC 2025-08-01ejbca-enterprise-installer: EJBCA Enterprise Cloud Configuration Wizard - Exposure
- POC 2025-08-01invicti-enterprise-installer: Invicti Enterprise Installation Page - Exposure
- POC 2025-08-01setup-github-enterprise: Setup GitHub Enterprise - Detect
- POC 2025-08-01unauth-etherpad: Unauthenticated Etherpad
- POC 2025-08-01kingdee-erp-rce: Kingdee OA Yunxingkong kdsvc - Remote Code Execution
- POC 2025-08-01splunk-enterprise-log4j-rce: Splunk Enterprise - Remote Code Execution (Apache Log4j)
- POC 2025-08-01wems-manager-xss: WEMS Enterprise Manager - Cross-Site Scripting
- POC 2025-08-01erp-nc-directory-traversal: ERP-NC - Local File Inclusion
- POC 2025-08-01clockwatch-enterprise-rce: ClockWatch Enterprise - Remote Code Execution
- POC 2025-08-01CVE-2023-2437: UserPro <= 5.1.1 - Authentication Bypass
- POC 2025-08-01CVE-2024-13979: St. Joe ERP system - SQL Injection
- POC 2025-08-01huaxia-jsherp-info-leak: 华夏 ERP 信息泄露
- POC 2025-08-01kubernetes-enterprise-manager: Kubernetes Enterprise Manager Detect
- POC 2025-07-31明源云-ERP MyPub_XMLHTTP.aspx SQL注入漏洞
- 2025-07-31明源云ERP系统存在SQL注入漏洞
- POC 2025-07-30票友ERP系统kefu_list存在信息泄露漏洞
- 2025-07-30关于U9 cloudERP软件接口存在任意文件读取漏洞的公告
- 2025-07-29CyberPanel /filemanager/upload 命令执行漏洞
- 2025-07-25时空智友ERP richclient.openForm XXE漏洞
- POC 2025-07-24普华科技-PowerPMS FileBrowserPdf.ashx SQL注入漏洞
- POC 2025-07-24普华 Powerpms /PowerPlat/Control/FileBrowserPdf.ashx SQL 注入漏洞
- POC 2025-07-23普华Powerpms FileBrowserPdf.ashx SQL注入漏洞
- 2025-07-22明源地产ERP /BUAdjust/DataRule/DataRule_XMLHTTP.aspx SQL 注入漏洞
- 2025-07-18装盟科技家装ERP管理系统 /WEB_SERVICE/WeChatAPI_ERPMobile.ashx SQL 注入漏洞
- 2025-07-14普华科技-PowerPMS GetFilesData SQL注入漏洞
- 2025-07-11关于U9 cloudERP软件附件预览接口存在SQL注入漏洞的安全通告
- 2025-07-07关于U9 cloudERP软件接口Print/PDFDirectPrint.aspx存在命令执行漏洞的安全通告
- 2025-07-04明源云ERP /PubPlatform/Nav/Login/SSO/Login.aspx usercode 未授权访问漏洞
- 2025-07-03明源云-ERP sso/login.aspx 身份认证绕过漏洞
- 2025-07-02明源云erp存在认证绕过漏洞
- 2025-07-01装盟科技家装ERP管理系统 WeChatAPI_ERPMobile.ashx存在SQL注入
- 2025-06-16月子会所ERP管理云平台 UploadHandler.ashx 文件读取漏洞
- 2025-06-12关于U9 cloudERP软件接口print/DynamaticExport.aspx存在任意文件下载漏洞的安全通告
- POC 2025-06-09关于U9 cloudERP软件接口CS/Office/OfficeReportCommonService.asmx存在代码执行漏洞的安全通告
- 2025-06-04朗速ERP WebDwgDefault.aspx 任意文件上传漏洞
- 2025-06-03智邦国际ERP RecordPrint.ashx 存在SQL注入漏洞
- 2025-05-29朗速ERP WebDwgDefault 存在文件上传漏洞
- 2025-05-23月子会所ERP管理云平台 /Page/BasicInfo/ashx/GetData.ashx SQL 注入漏洞 (CNVD-2024-22433)
- 2025-05-23云连POS-ERP管理系统 /services/ZksrService SQL 注入漏洞
- 2025-04-29昂捷ERP cwsqry.asmx存在SQL注入漏洞
- 2025-04-18装盟科技-家装ERP管理系统 getBudMaterial SQL注入漏洞
- 2025-04-18装盟科技-家装ERP管理系统 getBudMaterial2_page SQL注入漏洞
- 2025-04-18装盟科技-家装ERP管理系统 getBudMaterial2 SQL注入漏洞
- 2025-04-18装盟科技-家装ERP管理系统 getFixedBaseInfo_page SQL注入漏洞
- 2025-04-18装盟科技-家装ERP管理系统 getMatSort SQL注入漏洞
- 2025-04-11Hewlett Packard Enterprise AOS 操作系统命令注入漏洞
- 2025-04-11Hewlett Packard Enterprise AOS 操作系统命令注入漏洞
- 2025-04-07装盟科技家装ERP管理系统 Budget.asmx接口getBudMaterial存在SQL注入
- 2025-04-03(CVE-2025-2784)Libsoup HTTP响应处理堆缓冲区溢出读取漏洞
- 2025-04-01昂捷ERP /EnjoyRMIS_WS/WS/ReportTool/cwsqry.asmx GetDictionary SQL 注入漏洞
- 2025-04-01昂捷ERP /EnjoyRMIS_WS/WS/Approve/cwsapprove.asmx GetApproveDataXML SQL 注入漏洞
- 2025-03-28Yonyou UFIDA ERP-NC 代码注入漏洞
- 2025-03-26Yonyou UFIDA ERP-NC 代码注入漏洞
- 2025-03-26Yonyou UFIDA ERP-NC 代码注入漏洞
- 2025-03-26Yonyou UFIDA ERP-NC 代码注入漏洞
- 2025-03-14时空智友ERP /formservice updater.getStudioFile 文件读取漏洞
- 2025-03-07Hirsch Enterphone MESH Web GUI /mesh/jsp/login.jsp 默认口令漏洞(CVE-2025-26793)
- 2025-03-03昂捷ERP cwsapprove.asmx存在SQL注入漏洞
- 2025-02-18月子会所ERP管理云平台SelectUserMangerPrint存在SQL注入漏洞
- 2025-02-14上海普华科技发展股份有限公司PowerPMS接口GetFilesData处存在SQL注入
- 2025-02-08圣乔ERP系统 /erp/dwr/call/plaincall/SingleRowQueryConvertor.queryForString.dwr SQL 注入漏洞
- 2025-01-10明源地产ERP系统 /Kfxt/Service.asmx SQL 注入漏洞
- 2025-01-03朗速ERP UEditorAjaxApi 接口UEditor任意文件上传漏洞
- 2025-01-03朗速ERP /Api/FileUploadApi.ashx 文件上传漏洞
- 2025-01-03圣乔ERP系统 /erp/wap/../uploadFile.action 文件上传漏洞
- 2025-01-02圣乔ERP uploadFile 任意文件上传漏洞
- 2025-01-02圣乔ERP downloadFile 任意文件读取漏洞
- 2024-12-31众智同创ERP loginHZ.aspx XXE漏洞
- 2024-12-30朗速ERP UEditorAjaxApi存在SSRF漏洞
- 2024-12-27明源地产ERP系统 /CgZtbWeb/VisitorWeb/VisitorWeb_XMLHTTP.aspx SQL 注入漏洞
- 2024-12-25圣乔ERP系统 login.action 远程代码执行漏洞
- 2024-12-24中科商软ERP download.action 任意文件读取漏洞
- 2024-12-24月子护理ERP管理平台 UploadHandler 存在任意文件读取漏洞
- 2024-12-20圣乔ERP系统 /erp/wap/../downloadFile.action 文件读取漏洞
- POC 2024-12-17北京中科商软软件有限公司云连ERP ZksrService 存在SQL注入漏洞
- POC 2024-12-17北京中科商软软件有限公司中科云连ERP 存在任意文件读取漏洞
- 2024-12-17方天云ERP 任意文件读取漏洞
- 2024-12-16明源云ERP GetMyKeywordListForDesign SQL注入漏洞
- 2024-12-16圣乔ERP系统downloadFile存在任意文件读取漏洞
- 2024-12-13圣乔ERP系统 /erp/dwr/call/plaincall/DwrUtil.getSupplyQueryKeyword.dwr SQL 注入漏洞
- 2024-12-13圣乔ERP系统 /erp/dwr/call/plaincall/ResultSetConvertor.queryForMapWithDefaultValues.dwr SQL 注入漏洞
- 2024-12-09圣乔科技 ERP系统 /erp/dwr/call/plaincall/DwrUtil.getSupplyQueryKeyword.dwr 存在SQL注入漏洞
- 2024-12-07圣乔ERP系统 ResultSetConvertor 接口存在SQL注入漏洞
- 2024-12-07圣乔ERP系统 SingleRowQueryConvertor 接口存在SQL注入漏洞
- POC 2024-12-06圣乔ERP系统 /erp/dwr/call/plaincall/NamedParameterSingleRowQueryConvertor.queryForString.dwr SQL 注入漏洞
- 2024-12-06顺景ERP /api/TMScmQuote/GetFile 文件读取漏洞
- 2024-12-02顺景ERP GetFile 任意文件读取漏洞
- 2024-12-02顺景ERP TMScmQuote/GetFile 任意文件读取漏洞
- POC 2024-11-29圣乔ERP系统 NamedParameterSingleRowQueryConvertor 接口存在SQL注入漏洞
- 2024-11-22顺景ERP GetFile 任意文件读取漏洞
- 2024-11-22顺景ERP管理系统 UploadInvtSpBuzPlanFile 任意文件上传漏洞
- 2024-11-20汇智ERP系统 Upload.aspx 任意文件上传漏洞
- 2024-11-15顺景ERP管理系统 /api/cgInvtSp/UploadInvtSpBuzPlanFile 文件上传漏洞
- 2024-11-15睿贝外贸ERP /appPatchDownLoad 文件读取漏洞
- 2024-11-15企望 ERP系统 /mainFunctions/drawGrid.action 存在SQL注入漏洞
- 2024-11-14企望制造ERP系统 drawGrid.action SQL注入漏洞
- 2024-11-13顺景ERP管理系统 Upload 任意文件上传漏洞
- 2024-11-11企望制造ERP drawGrid.action存在SQL注入漏洞
- POC 2024-11-11顺景ERP管理系统UploadInvtSpBuzPlanFile存在任意文件上传漏洞
- 2024-11-08明源地产ERP /MyWorkflowManagement/WebService/WFWebService.asmx 命令执行漏洞
- POC 2024-11-05明源云ERP WFWebService.asmx 反序列化致远程代码执行漏洞
- 2024-11-01方天云ERP系统 /Data/setImg.ashx 文件上传漏洞
- 2024-11-01明源地产ERP系统 WFWebService.asmx 存在反序列化远程代码执行漏洞
- 2024-10-28Microsoft Office PowerPoint 数据伪造问题漏洞
- 2024-10-25普华科技PowerPMS /APPAccount/APPGetUser SQL 注入漏洞
- 2024-10-25明源云ERP /GetErpConfig.aspx 信息泄露漏洞
- POC 2024-10-19明源云ERP报表服务GetErpConfig存在信息泄露漏洞
- 2024-10-16明源云ERP 弱口令漏洞
- 2024-10-14GitHub GitHub Enterprise Server 签名验证不当漏洞
- 2024-10-12顺景ERP /api/cgInvtSp/UploadInvtSpFile 文件上传漏洞
- 2024-10-12方天云ERP系统 /Upload.ashx 文件上传漏洞
- 2024-09-18商混ERP系统 TaskCarToQueue.aspx SQL注入漏洞
- 2024-09-18顺景ERP管理系统 UploadInvtSpFile 任意文件上传漏洞
- 2024-09-16商混erp存在sql注入