CWE-707 对消息或数据结构的处理不恰当 类弱点 192 条 CVE 漏洞汇总,含 AI 中文分析。
CWE-707属于数据验证类漏洞,指产品未确保结构化消息或数据在传输前后保持格式正确及满足安全属性。攻击者常利用此缺陷,通过构造畸形输入导致数据被错误解析,从而引发注入攻击或逻辑绕过。开发者应实施严格的输入输出验证机制,确保所有结构化数据在读写前经过规范化处理,以消除格式异常带来的安全风险。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2022-3733 | seccome Ehoney 安全漏洞 — Web-Based Student Clearance System | 5.0 | Medium | 2022-10-28 |
| CVE-2022-3714 | Online Medicine Ordering System 安全漏洞 — Online Medicine Ordering System | 5.0 | Medium | 2022-10-27 |
| CVE-2022-3716 | Online Medicine Ordering System 安全漏洞 — Online Medicine Ordering System | 3.5 | Low | 2022-10-27 |
| CVE-2022-3672 | Sanitization Management System 跨站脚本漏洞 — Sanitization Management System | 3.5 | Low | 2022-10-26 |
| CVE-2022-3673 | Sanitization Management System 跨站脚本漏洞 — Sanitization Management System | 3.5 | Low | 2022-10-26 |
| CVE-2022-3704 | Ruby on Rails 跨站脚本漏洞 — Ruby on Rails | 3.5 | Low | 2022-10-26 |
| CVE-2022-3579 | Cashier Queuing System 安全漏洞 — Cashier Queuing System | 6.3 | Medium | 2022-10-18 |
| CVE-2022-3580 | Cashier Queuing System 安全漏洞 — Cashier Queuing System | 2.4 | Low | 2022-10-18 |
| CVE-2022-3581 | Cashier Queuing System 安全漏洞 — Cashier Queuing System | 2.4 | Low | 2022-10-18 |
| CVE-2022-3583 | Canteen Management System SQL注入漏洞 — Canteen Management System | 7.3 | High | 2022-10-18 |
| CVE-2022-3584 | Canteen Management System 安全漏洞 — Canteen Management System | 6.3 | Medium | 2022-10-18 |
| CVE-2022-3587 | Simple Cold Storage Management System 跨站脚本漏洞 — Simple Cold Storage Management System | 3.5 | Low | 2022-10-18 |
| CVE-2022-3546 | Simple Cold Storage Management System 跨站脚本漏洞 — Simple Cold Storage Management System | 2.4 | Low | 2022-10-17 |
| CVE-2022-3547 | Simple Cold Storage Management System 跨站脚本漏洞 — Simple Cold Storage Management System | 2.4 | Low | 2022-10-17 |
| CVE-2022-3548 | Simple Cold Storage Management System 跨站脚本漏洞 — Simple Cold Storage Management System | 2.4 | Low | 2022-10-17 |
| CVE-2022-3518 | Sanitization Management System 安全漏洞 — Sanitization Management System | 2.4 | Low | 2022-10-15 |
| CVE-2022-3519 | Sanitization Management System 安全漏洞 — Sanitization Management System | 2.4 | Low | 2022-10-15 |
| CVE-2022-3495 | Simple Online Public Access Catalog SQL注入漏洞 — Simple Online Public Access Catalog | 7.3 | High | 2022-10-14 |
| CVE-2022-3497 | Human Resource Management System 跨站脚本漏洞 — Human Resource Management System | 3.5 | Low | 2022-10-14 |
| CVE-2022-3502 | Human Resource Management System 安全漏洞 — Human Resource Management System | 3.5 | Low | 2022-10-14 |
| CVE-2022-3503 | Purchase Order Management System 安全漏洞 — Purchase Order Management System | 3.5 | Low | 2022-10-14 |
| CVE-2022-3504 | Purchase Order Management System SQL注入漏洞 — Sanitization Management System | 6.3 | Medium | 2022-10-14 |
| CVE-2022-3505 | Purchase Order Management System 跨站脚本漏洞 — Sanitization Management System | 3.5 | Low | 2022-10-14 |
| CVE-2022-3492 | Human Resource Management System 安全漏洞 — Human Resource Management System | 6.3 | Medium | 2022-10-13 |
| CVE-2022-3493 | Human Resource Management System 安全漏洞 — Human Resource Management System | 3.5 | Low | 2022-10-13 |
| CVE-2022-3464 | puppyCMS 跨站脚本漏洞 — puppyCMS | 4.3 | Medium | 2022-10-12 |
| CVE-2022-3467 | Beijing Jiusi Collaborative Software Office System SQL注入漏洞 — OA | 5.5 | Medium | 2022-10-12 |
| CVE-2022-3470 | Human Resource Management System 安全漏洞 — Human Resource Management System | 6.3 | Medium | 2022-10-12 |
| CVE-2022-3471 | Human Resource Management System 安全漏洞 — Human Resource Management System | 6.3 | Medium | 2022-10-12 |
| CVE-2022-3472 | Human Resource Management System 安全漏洞 — Human Resource Management System | 6.3 | Medium | 2022-10-12 |
CWE-707(对消息或数据结构的处理不恰当) 是常见的弱点类别,本平台收录该类弱点关联的 192 条 CVE 漏洞。