Логотип exploitDog
bind:CVE-2025-65897
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-65897

Количество 2

Количество 2

nvd логотип

CVE-2025-65897

2 месяца назад

zdh_web is a data collection, processing, monitoring, scheduling, and management platform. In zdh_web thru 5.6.17, insufficient validation of file upload paths in the application allows an authenticated user to write arbitrary files to the server file system, potentially overwriting existing files and leading to privilege escalation or remote code execution.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-j63w-3qvx-6842

2 месяца назад

zdh_web is a data collection, processing, monitoring, scheduling, and management platform. In zdh_web thru 5.6.17, insufficient validation of file upload paths in the application allows an authenticated user to write arbitrary files to the server file system, potentially overwriting existing files and leading to privilege escalation or remote code execution.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-65897

zdh_web is a data collection, processing, monitoring, scheduling, and management platform. In zdh_web thru 5.6.17, insufficient validation of file upload paths in the application allows an authenticated user to write arbitrary files to the server file system, potentially overwriting existing files and leading to privilege escalation or remote code execution.

CVSS3: 8.8
0%
Низкий
2 месяца назад
github логотип
GHSA-j63w-3qvx-6842

zdh_web is a data collection, processing, monitoring, scheduling, and management platform. In zdh_web thru 5.6.17, insufficient validation of file upload paths in the application allows an authenticated user to write arbitrary files to the server file system, potentially overwriting existing files and leading to privilege escalation or remote code execution.

CVSS3: 8.8
0%
Низкий
2 месяца назад

Уязвимостей на страницу