Hailey888
Hailey888 OA System: vulnerabilidades y CVE
Hailey888 OA System tiene 10 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE10
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-29691 | Media (6.1) | 0.27% | — | 14 may 2025 | A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the userName parameter at… |
| CVE-2025-29690 | Media (6.1) | 0.27% | — | 14 may 2025 | A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the outtype parameter at… |
| CVE-2025-29689 | Media (6.1) | 0.27% | — | 14 may 2025 | A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the password parameter at… |
| CVE-2025-29688 | Media (6.1) | 0.27% | — | 14 may 2025 | A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title parameter at… |
| CVE-2025-29686 | Media (6.1) | 0.27% | — | 14 may 2025 | A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title parameter at… |
| CVE-2025-3392 | Media (5.1) | 0.30% | — | 8 abr 2025 | A vulnerability was found in hailey888 oa_system up to 2025.01.01 and classified as problematic. Affected by this issue is the function Save of the file cn/gson/oasys/controller/mail/MailController.java of the component… |
| CVE-2025-3391 | Media (5.1) | 0.31% | — | 8 abr 2025 | A vulnerability has been found in hailey888 oa_system up to 2025.01.01 and classified as problematic. Affected by this vulnerability is the function outAddress of the file cn/gson/oass/controller/address/AddrController.… |
| CVE-2025-3390 | Media (5.1) | 0.30% | — | 8 abr 2025 | A vulnerability, which was classified as problematic, was found in hailey888 oa_system up to 2025.01.01. Affected is the function addandchangeday of the file cn/gson/oass/controller/daymanager/DaymanageController.java… |
| CVE-2025-3389 | Media (5.1) | 0.30% | — | 8 abr 2025 | A vulnerability, which was classified as problematic, has been found in hailey888 oa_system up to 2025.01.01. This issue affects the function testMess of the file… |
| CVE-2025-3388 | Media (5.3) | 0.40% | — | 7 abr 2025 | A vulnerability classified as problematic was found in hailey888 oa_system up to 2025.01.01. This vulnerability affects the function loginCheck of the file cn/gson/oasys/controller/login/LoginsController.java of the… |