VendorsNuserpnus-m9_erpall versions
Vulnerabilities

Nuserp nus-m9 ERP

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2024-44758
An arbitrary file upload vulnerability in the component /Production/UploadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to execute arbitrary code via uploading crafted files.
Published 2024-11-15 · Analyzed
9.8EPSS 0.007
CVE-2024-44756
NUS-M9 ERP Management Software v3.0.0 was discovered to contain a SQL injection vulnerability via the usercode parameter at /UserWH/checkLogin.
Published 2024-11-18 · Analyzed
9.8EPSS 0.005
CVE-2024-44757
An arbitrary file download vulnerability in the component /Basics/DownloadInpFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information via a crafted interface request.
Published 2024-11-18 · Analyzed
7.5EPSS 0.004
CVE-2024-44759
An arbitrary file download vulnerability in the component /Doc/DownloadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information via a crafted interface request.
Published 2024-11-15 · Analyzed
7.5EPSS 0.004