Описание
A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an attacker to use the exp.adpx file as a zip compressed file to construct a special file name, which can be used to decompress the project file into the system startup folder, restart the system, and automatically execute the constructed attack script.
Уязвимые конфигурации
EPSS
3.3 Low
CVSS3
9.8 Critical
CVSS3
Дефекты
Связанные уязвимости
A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an attacker to use the exp.adpx file as a zip compressed file to construct a special file name, which can be used to decompress the project file into the system startup folder, restart the system, and automatically execute the constructed attack script.
EPSS
3.3 Low
CVSS3
9.8 Critical
CVSS3