CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2023-51927

Critical · CVSS 9.8

YonBIP — SQL Injection

CVSS
9.8
nvd
EPSS
KEV
No
Class
other
CWE-89, CWE-89

Description

YonBIP v3_23.05 was discovered to contain a SQL injection vulnerability via the com.yonyou.hrcloud.attend.web.AttendScriptController.runScript() method.

Search profile — drives PoC discovery

Symbols com.yonyou.hrcloud.attend.web.AttendScriptControllerrunScript()AttendScriptController.runScripthrcloud.attend.web
Keywords CVE-2023-51927YonBIP SQL injectionAttendScriptController runScriptYonBIP v3_23.05Yonyou BIP SQLihrcloud attend runScript PoCYonBIP AttendScriptController exploit
Versions: v3_23.05

References

Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-06T00:30:39.000Z