---
id: CVE-2025-15424
title: A vulnerability was found in Yonyou KSOA 9.0
summary: >-
  A vulnerability was found in Yonyou KSOA 9.0. The affected element is an
  unknown function of the file /worksheet/agent_worksdel.jsp of the component
  HTTP GET Parameter Handler. Performing a manipulation of the argument ID
  results in sql …
severity: high
cvss: 7.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-74
  - CWE-89
  - CWE-89
vendor: yonyou
product: ksoa
affected:
  - ksoa = 9.0
published: '2026-01-02'
updated: '2026-10-01'
sourceUpdated: '2026-10-01T08:10:00.183'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-15424'
references:
  - url: >-
      https://github.com/master-abc/cve/blob/main/Yonyou%20Space-Time%20Enterprise%20Information%20Integration%20KSOA%20Platformworksheetagent_worksdel.jsp%20SQL%20injection.md
    label: cna@vuldb.com
  - url: >-
      https://github.com/master-abc/cve/blob/main/Yonyou%20Space-Time%20Enterprise%20Information%20Integration%20KSOA%20Platformworksheetagent_worksdel.jsp%20SQL%20injection.md#vulnerability-details-and-poc
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?ctiid.339346'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?id.339346'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.721348'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.721526'
    label: cna@vuldb.com
  - url: >-
      https://github.com/master-abc/cve/blob/main/Yonyou%20Space-Time%20Enterprise%20Information%20Integration%20KSOA%20Platformworksheetagent_worksdel.jsp%20SQL%20injection.md#vulnerability-details-and-poc
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
epss: 0.00456
epssPercentile: 0.37123
ingestedAt: '2026-10-01T08:40:11.729Z'
---

## Overview

A vulnerability was found in Yonyou KSOA 9.0. The affected element is an unknown function of the file /worksheet/agent_worksdel.jsp of the component HTTP GET Parameter Handler. Performing a manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Affected

- `ksoa = 9.0`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
