📦 Oa System

by Aaluoxiang

🔍 What is Oa System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-44033

CRITICAL CVSS 9.8 Aug 29, 2025

This SQL injection vulnerability in oa_system oasys v1.1 allows remote attackers to execute arbitrary SQL commands via the allDirector() method. Attackers can potentially read, modify, or delete datab...

CVE-2025-44034

HIGH CVSS 8.0 Sep 16, 2025

This SQL injection vulnerability in oa_system oasys v1.1 allows remote attackers to execute arbitrary SQL commands via the alph parameters in the AddrController. This could lead to data theft, data ma...

CVE-2025-5544

MEDIUM CVSS 4.3 Jun 3, 2025

This CVE describes a path traversal vulnerability in the aaluoxiang oa_system that allows attackers to read arbitrary files on the server. The vulnerability exists in the image function of UserpanelCo...

CVE-2025-1958

MEDIUM CVSS 6.3 Mar 4, 2025

This critical SQL injection vulnerability in aaluoxiang oa_system 1.0 allows remote attackers to execute arbitrary SQL commands via the 'outtype' parameter in address-mapper.xml. Attackers can potenti...