O2OA v9.0.3 was discovered to contain a remote code execution (RCE) vulnerability via the mainOutput() function.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/o2oa/o2oa/issues/158 | Exploit Issue Tracking Vendor Advisory | 
Configurations
                    History
                    09 Sep 2025, 15:24
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:zoneland:o2oa:9.0.3:*:*:*:*:*:*:* | |
| References | () https://github.com/o2oa/o2oa/issues/158 - Exploit, Issue Tracking, Vendor Advisory | |
| First Time | Zoneland Zoneland o2oa | 
29 Aug 2025, 16:24
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | 
27 Aug 2025, 20:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-08-27 20:15
Updated : 2025-09-09 15:24
NVD link : CVE-2024-37777
Mitre link : CVE-2024-37777
CVE.ORG link : CVE-2024-37777
JSON object : View
Products Affected
                zoneland
- o2oa
