Product
alldata
7 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-29434
CVE-2024-29432
CVE-2024-27605
CVE-2024-27604
CVE-2024-27602
CVE-2024-29435
CVE-2024-29433
all versions
An issue in the system image upload interface of Alldata v0.4.6 allows attackers to execute a directory traversal when uploading a
all versions
Alldata v0.4.6 was discovered to contain a SQL injection vulnerability via the tablename parameter at /data/masterdata/datas.
all versions
Alldata V0.4.6 is vulnerable to Insecure Permissions. Using users (test) can query information about the users in the system.
all versions
Alldata V0.4.6 is vulnerable to Command execution vulnerability. System commands can be deserialized.
all versions
Alldata V0.4.6 is vulnerable to Incorrect Access Control. A total of many modules interface documents have been leaked.For example
all versions
An issue discovered in Alldata v0.4.6 allows attacker to run arbitrary commands via the processId parameter.
all versions
A deserialization vulnerability in the FASTJSON component of Alldata v0.4.6 allows attackers to execute arbitrary commands via sup