CVE-2025-8702 | Wanzhou WOES Intelligent Optimization Energy Saving System Historical Data Query GetVariableByOneIDNew sql injection (EUVD-2025-23971)
A vulnerability classified as critical was found in Wanzhou WOES Intelligent Optimization Energy Saving System 1.0. This impacts an unknown function of the file /CommonSolution/GetVariableByOneIDNew of the component Historical Data Query Module. Such manipulation of the argument ObjectID leads to sql injection.
This vulnerability is referenced as CVE-2025-8702. It is possible to launch the attack remotely. Furthermore, an exploit is available.