6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in Jinher OA 1.0. This issue affects some unknown processing of the file GetTreeDate.aspx. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-9669
Source
VulDB
Published
Aug 29, 2025 at 19:02
Modified
Aug 29, 2025 at 19:24
Affected Product
Vendor
Jinher
Product
OA
Version
1.0
Affected Versions
Jinher OA 1.0