CVE-2024-48213: Rockoa Xinhu

Medium severity, CVSS 4.3. EPSS: 0.7% chance of exploitation in the next 30 days.

RockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php.

Affected products

  • Rockoa Xinhu: version 2.6.5 only

Published 2024-10-23. Last modified 2026-06-17.