CVE-2024-37777

O2OA v9.0.3 was discovered to contain a remote code execution (RCE) vulnerability via the mainOutput() function.
References
Configurations

No configuration.

History

29 Aug 2025, 16:24

Type Values Removed Values Added
Summary
  • (es) Se descubrió que O2OA v9.0.3 contiene una vulnerabilidad de ejecución remota de código (RCE) a través de la función mainOutput().

27 Aug 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-27 20:15

Updated : 2025-08-29 16:24


NVD link : CVE-2024-37777

Mitre link : CVE-2024-37777

CVE.ORG link : CVE-2024-37777


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation

CWE-94

Improper Control of Generation of Code ('Code Injection')