Описание
An unrestricted upload of file with dangerous type vulnerability in the e-paper draft upload function of SUNNET Corporate Training Management System through v10.3 allows remote authenticated users with administrator privileges to execute arbitrary commands by uploading a crafted ZIP archive containing a server-executable file.
Ссылки
EPSS
Процентиль: 50%
0.0067
Низкий
Дефекты
CWE-434
Связанные уязвимости
github
около 1 месяца назад
An unrestricted upload of file with dangerous type vulnerability in the e-paper draft upload function of SUNNET Corporate Training Management System through v10.3 allows remote authenticated users with administrator privileges to execute arbitrary commands by uploading a crafted ZIP archive containing a server-executable file.
EPSS
Процентиль: 50%
0.0067
Низкий
Дефекты
CWE-434