Vulnerabilidades en Tiandy
13 resultadosCVE-2026-4585CRITICALTiandy Easy7 Integrated Management Platform Configuration ImportSystemConfiguration.jsp os command injectionEPSS 3.3%CVE-2026-7698MEDIUMTiandy Easy7 Integrated Management Platform updateDbBackupInfo os command injectionEPSS 1.7%CVE-2026-4187MEDIUMTiandy Easy7 Integrated Management Platform Device Identifier UpdateLocalDevInfo.jsp missing authenticationEPSS 0.5%CVE-2026-3818MEDIUMTiandy Easy7 CMS Windows GetDBData.jsp sql injectionEPSS 0.4%CVE-2026-3797MEDIUMTiandy Video Surveillance System 视频监控平台 CLS_REST_File.java uploadFile unrestricted uploadEPSS 0.4%CVE-2026-9466MEDIUMTiandy Easy7 Integrated Management Platform API Endpoint updateUserPassword password recoveryEPSS 0.4%CVE-2026-9465MEDIUMTiandy Easy7 Integrated Management Platform GetDBDataEx.jsp sql injectionEPSS 0.3%CVE-2026-2985MEDIUMTiandy Video Surveillance System 视频监控平台 CLSBODownLoad.java downloadImage server-side request forgeryEPSS 0.3%CVE-2026-4221MEDIUMTiandy Easy7 Integrated Management Platform Endpoint uploadLedImage unrestricted uploadEPSS 0.3%CVE-2026-4289MEDIUMTiandy Easy7 Integrated Management Platform getRecByTemplateId sql injectionEPSS 0.3%CVE-2026-4232MEDIUMTiandy Integrated Management Platform getAuthorityByUserId sql injectionEPSS 0.3%CVE-2026-4287MEDIUMTiandy Easy7 Integrated Management Platform Endpoint queryResources sql injectionEPSS 0.3%CVE-2026-4288MEDIUMTiandy Easy7 Integrated Management Platform Endpoint getDevDetailedInfo sql injectionEPSS 0.3%