📦 Yonbip

by Yonyou

🔍 What is Yonbip?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-51906

CRITICAL CVSS 9.8 Jan 20, 2024

This vulnerability allows remote attackers to execute arbitrary code on yonyou YonBIP systems by sending a crafted script to the ServiceDispatcherServlet component. It affects yonyou YonBIP v3_23.05 i...

CVE-2023-51925

CRITICAL CVSS 9.8 Jan 20, 2024

This vulnerability allows attackers to upload arbitrary files to YonBIP systems through a specific API endpoint, potentially leading to remote code execution. It affects YonBIP v3_23.05 installations ...

CVE-2023-51927

CRITICAL CVSS 9.8 Jan 20, 2024

This vulnerability allows attackers to execute arbitrary SQL commands through the YonBIP HR attendance script controller. It affects organizations using YonBIP v3_23.05, potentially compromising sensi...

CVE-2023-51926

HIGH CVSS 7.5 Jan 20, 2024

YonBIP v3_23.05 contains an arbitrary file read vulnerability in the nc.bs.framework.comn.serv.CommonServletDispatcher component. This allows attackers to read sensitive files from the server filesyst...