Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1020 CNY

100%

OA 2017 — Vulnerabilities & Security Advisories 37

All 37 CVE vulnerabilities found in OA 2017, with AI-generated Chinese analysis, references, and POCs.

This page documents Common Weakness Enumerations associated with the OA 2017 software product provided by the vendor Seagull Scientific. It specifically addresses known security flaws that may allow unauthorized access, data leakage, or system compromise within this particular office automation solution. The vulnerabilities collected on this page span critical and high-severity issues reported between 2017 and 2023. This timeframe covers the initial release period and subsequent updates where various security patches were applied or bypassed. The data includes flaws related to input validation, authentication mechanisms, and configuration errors that were identified during independent audits and vendor disclosures. Visitors to this resource can discover detailed technical insights into the security posture of OA 2017. You can track the vendor’s advisories to understand the response timeline for each reported issue. Additionally, you may analyze specific weakness classes to comprehend the underlying technical causes of the exploits. The page also provides a comprehensive view of the product’s vulnerability history, allowing security professionals to assess the long-term reliability of the software and identify potential residual risks in unpatched environments. This structured aggregation supports informed decision-making for system administrators and security analysts managing legacy OA systems.

Vendor: Tongda

CVE IDTitleCVSSSeverityPublished
CVE-2024-10732 Tongda OA 2017 index.php sql injection CWE-89 6.3 Medium2024-11-03
CVE-2024-10656 Tongda OA 2017 apply.php sql injection CWE-89 6.3 Medium2024-11-01
CVE-2024-10655 Tongda OA 2017 new.php sql injection CWE-89 6.3 Medium2024-11-01
CVE-2024-10619 Tongda OA 2017 next_detail.php sql injection CWE-89 6.3 Medium2024-11-01
CVE-2024-10618 Tongda OA 2017 record_detail.php sql injection CWE-89 6.3 Medium2024-11-01
CVE-2024-10615 Tongda OA 2017 delete_data_attach.php sql injection CWE-89 6.3 Medium2024-11-01
CVE-2024-10602 Tongda OA 2017 data_picker_link.php sql injection CWE-89 6.3 Medium2024-10-31
CVE-2024-10601 Tongda OA 2017 delete.php sql injection CWE-89 6.3 Medium2024-10-31
CVE-2024-10600 Tongda OA 2017 submenu.php sql injection CWE-89 7.3 High2024-10-31
CVE-2024-10599 Tongda OA 2017 package_static_resources.php resource consumption CWE-400 5.3 Medium2024-10-31
CVE-2024-1252 Tongda OA 2017 delete.php sql injection CWE-89 5.5 Medium2024-02-06
CVE-2024-1251 Tongda OA 2017 delete.php sql injection CWE-89 5.5 Medium2024-02-06
CVE-2024-0938 Tongda OA 2017 delete_webmail.php sql injection CWE-89 5.5 Medium2024-01-26
CVE-2023-7180 Tongda OA 2017 delete.php sql injection CWE-89 5.5 Medium2023-12-30
CVE-2023-7023 Tongda OA 2017 delete.php sql injection CWE-89 6.3 Medium2023-12-21
CVE-2023-7022 Tongda OA 2017 delete_all.php sql injection CWE-89 6.3 Medium2023-12-21
CVE-2023-7021 Tongda OA 2017 delete_search.php sql injection CWE-89 6.3 Medium2023-12-21
CVE-2023-7020 Tongda OA 2017 view.php sql injection CWE-89 6.3 Medium2023-12-21
CVE-2023-6885 Tongda OA 2017 delete.php sql injection CWE-89 5.5 Medium2023-12-16
CVE-2023-6611 Tongda OA 2017 delete.php sql injection CWE-89 5.5 Medium2023-12-08
CVE-2023-6608 Tongda OA 2017 delete.php sql injection CWE-89 5.5 Medium2023-12-08
CVE-2023-6607 Tongda OA 2017 delete.php sql injection CWE-89 5.5 Medium2023-12-08
CVE-2023-6276 Tongda OA 2017 delete.php sql injection CWE-89 6.3 Medium2023-11-24
CVE-2023-6084 Tongda OA 2017 delete.php sql injection CWE-89 6.3 Medium2023-11-12
CVE-2023-6054 Tongda OA 2017 lock.php sql injection CWE-89 5.5 Medium2023-11-09
CVE-2023-6053 Tongda OA 2017 delete.php sql injection CWE-89 6.3 Medium2023-11-09
CVE-2023-6052 Tongda OA 2017 delete.php sql injection CWE-89 6.3 Medium2023-11-09
CVE-2023-5783 Tongda OA 2017 delete.php sql injection CWE-89 6.3 Medium2023-10-26
CVE-2023-5782 Tongda OA 2017 General News delete_query.php sql injection CWE-89 5.5 Medium2023-10-26
CVE-2023-5781 Tongda OA 2017 delete_webmail.php DELETE_STR sql injection CWE-89 6.3 Medium2023-10-26

All 37 known CVE vulnerabilities affecting OA 2017 with full Chinese analysis, references, and POCs where available.