Vulnerabilities in Metasoft 美特软件
13 resultsVexday analysis
Metasoft apresenta 12 vulnerabilidades catalogadas, com 3 divulgações nos últimos 90 dias, indicando risco emergente moderado. Nenhuma está sob exploração ativa conhecida (KEV) e não há críticas confirmadas, reduzindo a urgência operacional imediata. A fraqueza dominante é CWE-284 (controle de acesso impróprio), sugerindo necessidade de revisão de mecanismos de autorização como medida preventiva.
CVE-2025-7874MEDIUMMetasoft 美特软件 MetaCRM env.jsp information disclosureEPSS 0.7%CVE-2025-7875MEDIUMMetasoft 美特软件 MetaCRM debug.jsp improper authenticationEPSS 0.7%CVE-2025-7876MEDIUMMetasoft 美特软件 MetaCRM download.jsp AnalyzeParam deserializationEPSS 0.7%CVE-2025-7879MEDIUMMetasoft 美特软件 MetaCRM mobileupload.jsp unrestricted uploadEPSS 0.5%CVE-2025-7877MEDIUMMetasoft 美特软件 MetaCRM sendfile.jsp unrestricted uploadEPSS 0.5%CVE-2025-7878MEDIUMMetasoft 美特软件 MetaCRM upload2.jsp unrestricted uploadEPSS 0.5%CVE-2026-16324MEDIUMMetasoft 美特软件 MetaCRM upload.jsp unrestricted uploadEPSS 0.5%CVE-2026-15514MEDIUMMetasoft 美特软件 MetaCRM PHPRPC Remote Call rpc.jsp RPCService.query sql injectionEPSS 0.4%CVE-2025-7873MEDIUMMetasoft 美特软件 MetaCRM mcc_login.jsp sql injectionEPSS 0.4%CVE-2025-7880MEDIUMMetasoft 美特软件 MetaCRM sendsms.jsp unrestricted uploadEPSS 0.4%CVE-2026-8758MEDIUMMetasoft 美特软件 MetaCRM upload3.jsp unrestricted uploadEPSS 0.3%CVE-2026-6629MEDIUMMetasoft 美特软件 MetaCRM Interface sql.jsp Statement.executeUpdate sql injectionEPSS 0.3%CVE-2026-10205MEDIUMMetasoft 美特软件 MetaCRM upload.jsp unrestricted uploadEPSS 0.2%