No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 07 Sep 2026 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in sfturing ssm_pro up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected is an unknown function of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order Endpoint. This manipulation of the argument hospitalName/officesName/doctorName causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | sfturing ssm_pro Order Endpoint OrderController.java cross site scripting | |
| First Time appeared |
Sfturing
Sfturing ssm Pro |
|
| Weaknesses | CWE-79 CWE-94 |
|
| CPEs | cpe:2.3:a:sfturing:ssm_pro:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Sfturing
Sfturing ssm Pro |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-07T03:00:07.338Z
Reserved: 2026-09-06T11:58:43.042Z
Link: CVE-2026-86264
No data.
Status : Received
Published: 2026-09-07T03:17:19.243
Modified: 2026-09-07T03:17:19.243
Link: CVE-2026-86264
No data.
OpenCVE Enrichment
Updated: 2026-09-07T04:30:17Z