CVE-2023-51927
Critical · CVSS 9.8YonBIP — SQL Injection
- CVSS
- 9.8
- nvd
- EPSS
- —
- KEV
- No
- Class
- other
- CWE-89, CWE-89
Description
YonBIP v3_23.05 was discovered to contain a SQL injection vulnerability via the com.yonyou.hrcloud.attend.web.AttendScriptController.runScript() method.
Search profile — drives PoC discovery
Symbols com.yonyou.hrcloud.attend.web.AttendScriptControllerrunScript()AttendScriptController.runScripthrcloud.attend.web
Keywords CVE-2023-51927YonBIP SQL injectionAttendScriptController runScriptYonBIP v3_23.05Yonyou BIP SQLihrcloud attend runScript PoCYonBIP AttendScriptController exploit
Versions: v3_23.05
References
Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-06T00:30:39.000Z