Security Advisory

CVE-2023-50692

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-28 00:00:00
Last updated 2025-04-17 20:31:51
Assigner mitre
State PUBLISHED

Description

File Upload vulnerability in JIZHICMS v.2.5, allows remote attacker to execute arbitrary code via a crafted file uploaded and downloaded to the download_url parameter in the app/admin/exts/ directory.