Filtered by vendor Erp Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-44759 1 Erp 1 Management Software 2024-12-03 7.5 High
An arbitrary file download vulnerability in the component /Doc/DownloadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information via a crafted interface request.
CVE-2024-44758 1 Erp 1 Management Software 2024-11-27 9.8 Critical
An arbitrary file upload vulnerability in the component /Production/UploadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to execute arbitrary code via uploading crafted files.
CVE-2024-44757 1 Erp 1 Management Software 2024-11-21 7.5 High
An arbitrary file download vulnerability in the component /Basics/DownloadInpFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information via a crafted interface request.
CVE-2024-44756 1 Erp 1 Management Software 2024-11-21 N/A
NUS-M9 ERP Management Software v3.0.0 was discovered to contain a SQL injection vulnerability via the usercode parameter at /UserWH/checkLogin.