References https://www.ufida168.com/case_detail/2984.html https://www.ufida168.com/case_detail/3445.html https://ddpoc.com/DVB-2024-7939.html https://avd.aliyun.com/detail?id=AVD-2024-1751194 https://mrxn.net/jswz/yonyon-u8crm-pub-objectview-ID-sqli.html https://github.com/eeeeeeeeee-code/POC/blob/main/wpoc/%E7%94%A8%E5%8F%8BOA/%E7%94%A8%E5%8F%8BU8+CRM%E7%B3%BB%E7%BB%9Fleadconversion.php%E5%AD%98%E5%9C%A8SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md
Related VulnerabilitiesPoC用友U8 CRM /background/reservationcomplete.php 未授权访问漏洞用友U8 CRM /lead/leadconversion.php SQL 注入漏洞用友 U8 CRM /ajax/getsrvtemplate.php/getproductdata SQL 注入漏洞PoCyonyou-u8-crm-fileread: 用友U8 CRM V13-V16.5系统任意文件读取PoCyonyou-u8-crm-getemaildata-uploadfile: 用友 U8 CRM客户关系管理系统 getemaildata.php 任意文件上传漏洞PoCyonyou-u8-crm-lfi: UFIDA U8 CRM getemaildata.php - Arbitrary File Read用友U8 CRM checkselectpartapply.php SQL注入漏洞用友U8+crm bgt/recievesms.php存在sql注入漏洞关于U8+ CRM产品存在SQL注入漏洞的公告用友U8 CRM /ajax/getufvouchdata.php getAffectAttr SQL 注入漏洞