Beveiligingsadvies

CVE-2024-10293

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-10-23 16:00:05
Laatst bijgewerkt 2024-10-23 17:01:30
Toegewezen door VulDB
CVSS-score 6.5
Status PUBLISHED

Beschrijving

A vulnerability was found in ZZCMS 2023. It has been classified as critical. Affected is the function Ebak_SetGotoPak of the file 3/Ebbak5.1/upload/class/functions.php. The manipulation of the argument file leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.