CVE-2025-8806 | zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 treeData sql injection (EUVD-2025-24086)
A vulnerability categorized as critical has been discovered in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0. This issue affects some unknown processing of the file /adpweb/a/sys/office/treeData. Such manipulation of the argument extId leads to sql injection.
This vulnerability is traded as CVE-2025-8806. The attack may be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.