Beveiligingsadvies

CVE-2024-35570

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-05-23 18:29:28
Laatst bijgewerkt 2025-02-13 15:59:01
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

An arbitrary file upload vulnerability in the component \controller\ImageUploadController.class of inxedu v2.0.6 allows attackers to execute arbitrary code via uploading a crafted jsp file.