Home

Description

JEEWMS 1.0 is vulnerable to SQL Injection. Attackers can inject malicious SQL statements through the id1 and id2 parameters in the /systemControl.do interface for attack.

PUBLISHED Reserved 2026-01-09 | Published 2026-02-03 | Updated 2026-02-11 | Assigner mitre

References

gitee.com/erzhongxmu/JEEWMS

cve.org (CVE-2025-70311)

nvd.nist.gov (CVE-2025-70311)

Download JSON