top of page
perceptive_background_267k.jpg

A security flaw has been discovered in Sangfor Operation and Maintenance Management System up to 3.0.8. The impacted element is an unknown function of the file …

Published:

9 January 2026 at 23:00:00

Alert date:

10 January 2026 at 13:10:58

Source:

nvd.nist.gov

Click to open the original link from this advisory

A security vulnerability has been identified in Sangfor Operation and Maintenance Management System up to version 3.0.8. The flaw affects an unknown function in the file /fort/trust/version/common/common.jsp, where manipulation of the File argument leads to unrestricted file upload capabilities. This vulnerability can be exploited remotely and a public exploit has been released. The vendor was notified about the disclosure but did not provide any response. The vulnerability poses significant risk due to its remote exploitability and public availability of exploit code.

Technical details

Mitigation steps:

Affected products:

Sangfor Operation and Maintenance Management System

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page