VendorsAnji-plusaj-reportall versions
Vulnerabilities

Anji-plus Anji Jiajia Information Technology Co., Ltd.

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2024-5355
anji-plus AJ-Report IGroovyHandler command injection
Published 2024-05-26 · Analyzed
9.8EPSS 0.032
CVE-2024-5356
anji-plus AJ-Report testTransform;swagger-ui sql injection
Published 2024-05-26 · Analyzed
9.8EPSS 0.010
CVE-2022-46973
Report v0.9.8.6 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability.
Published 2023-03-03 · Modified
9.8EPSS 0.008
CVE-2024-5353
anji-plus AJ-Report ZIP File decompress path traversal
Published 2024-05-26 · Analyzed
9.8EPSS 0.008
CVE-2024-5351
anji-plus AJ-Report Javascript getValueFromJs deserialization
Published 2024-05-26 · Analyzed
9.8EPSS 0.008
CVE-2024-5352
anji-plus AJ-Report validationRules deserialization
Published 2024-05-26 · Analyzed
9.8EPSS 0.008
CVE-2024-5350
anji-plus AJ-Report pageList sql injection
Published 2024-05-25 · Analyzed
9.8EPSS 0.006
CVE-2022-42983
anji-plus AJ-Report 0.9.8.6 allows remote attackers to bypass login authentication by spoofing JWT Tokens.
Published 2022-10-17 · Modified
8.8EPSS 0.014
CVE-2024-5354
anji-plus AJ-Report detailByCode information disclosure
Published 2024-05-26 · Analyzed
6.5EPSS 0.006