Описание
Erupt Unrestricted Upload of File with Dangerous Type vulnerability
An arbitrary file upload vulnerability in the component /upload/GoodsCategory/image of erupt v1.12.19 allows attackers to execute arbitrary code via uploading a crafted file.
Пакеты
Наименование
xyz.erupt:erupt
maven
Затронутые версииВерсия исправления
<= 1.12.19
Отсутствует
Связанные уязвимости
CVSS3: 5.4
nvd
8 месяцев назад
An arbitrary file upload vulnerability in the component /upload/GoodsCategory/image of erupt v1.12.19 allows attackers to execute arbitrary code via uploading a crafted file.