Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-24727

Опубликовано: 24 июл. 2026
Источник: nvd
EPSS Низкий

Описание

An unrestricted upload of file with dangerous type vulnerability in the e-paper draft upload function of SUNNET Corporate Training Management System through v10.3 allows remote authenticated users with administrator privileges to execute arbitrary commands by uploading a crafted ZIP archive containing a server-executable file.

EPSS

Процентиль: 50%
0.0067
Низкий

Дефекты

CWE-434

Связанные уязвимости

github
около 1 месяца назад

An unrestricted upload of file with dangerous type vulnerability in the e-paper draft upload function of SUNNET Corporate Training Management System through v10.3 allows remote authenticated users with administrator privileges to execute arbitrary commands by uploading a crafted ZIP archive containing a server-executable file.

EPSS

Процентиль: 50%
0.0067
Низкий

Дефекты

CWE-434