📦 Docsys

by Docsys Project

🔍 What is Docsys?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-15494

MEDIUM CVSS 6.3 Jan 9, 2026

This SQL injection vulnerability in RainyGao DocSys allows attackers to manipulate database queries via the Username parameter. Remote attackers can potentially access, modify, or delete sensitive dat...

CVE-2025-15493

MEDIUM CVSS 6.3 Jan 9, 2026

This CVE describes a SQL injection vulnerability in RainyGao DocSys document management system up to version 2.02.36. Attackers can exploit this remotely by manipulating the searchWord parameter, pote...

CVE-2025-15492

MEDIUM CVSS 6.3 Jan 9, 2026

This CVE describes a SQL injection vulnerability in RainyGao DocSys up to version 2.02.36. Attackers can remotely exploit this by manipulating the searchWord parameter in GroupMemberMapper.xml, potent...

CVE-2025-11631

MEDIUM CVSS 5.4 Oct 12, 2025

This CVE describes a path traversal vulnerability in RainyGao DocSys up to version 2.02.36. Attackers can remotely manipulate the 'path' parameter in the /Doc/deleteDoc.do endpoint to delete arbitrary...

CVE-2025-11630

MEDIUM CVSS 6.3 Oct 12, 2025

This CVE describes a path traversal vulnerability in RainyGao DocSys up to version 2.02.36. Attackers can remotely exploit the file upload function to write arbitrary files to unintended directories, ...

CVE-2025-11629

MEDIUM CVSS 6.3 Oct 12, 2025

This SQL injection vulnerability in RainyGao DocSys allows attackers to execute arbitrary SQL commands through the getUserList function. It affects all versions up to 2.02.36 and can be exploited remo...