A vulnerability has been found in Seeyon Zhiyuan OA Web Application System up to 20251223. This affects an unknown function of the file /assetsGroupReport/assetsService.j%73p. The manipulation of the argument unitCode leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is still unclear if this vulnerability genuinely exists. Seeyon filed a report that this issue does not affect their product but might affect a product of another vendor.
References
| Link | Resource |
|---|---|
| https://github.com/xinshou-test/CVE/issues/1 | Exploit Issue Tracking Third Party Advisory |
| https://vuldb.com/?ctiid.339480 | Permissions Required VDB Entry |
| https://vuldb.com/?id.339480 | Third Party Advisory VDB Entry |
| https://vuldb.com/?submit.721926 | Third Party Advisory VDB Entry |
| https://github.com/xinshou-test/CVE/issues/1 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
29 Jan 2026, 10:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) A vulnerability has been found in Seeyon Zhiyuan OA Web Application System up to 20251223. This affects an unknown function of the file /assetsGroupReport/assetsService.j%73p. The manipulation of the argument unitCode leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is still unclear if this vulnerability genuinely exists. Seeyon filed a report that this issue does not affect their product but might affect a product of another vendor. |
20 Jan 2026, 17:50
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Seeyon oa Web Application System
Seeyon |
|
| References | () https://github.com/xinshou-test/CVE/issues/1 - Exploit, Issue Tracking, Third Party Advisory | |
| References | () https://vuldb.com/?ctiid.339480 - Permissions Required, VDB Entry | |
| References | () https://vuldb.com/?id.339480 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.721926 - Third Party Advisory, VDB Entry | |
| CPE | cpe:2.3:a:seeyon:oa_web_application_system:1.0:*:*:*:*:*:*:* |
05 Jan 2026, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/xinshou-test/CVE/issues/1 - |
05 Jan 2026, 00:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-05 00:15
Updated : 2026-01-29 10:15
NVD link : CVE-2025-15447
Mitre link : CVE-2025-15447
CVE.ORG link : CVE-2025-15447
JSON object : View
Products Affected
seeyon
- oa_web_application_system
