CVE-2024-35570

Publication date

2024-05-23 18:29:28

Family

mitre

State

PUBLISHED

Description

An arbitrary file upload vulnerability in the component controllerImageUploadController.class of inxedu v2.0.6 allows attackers to execute arbitrary code via uploading a crafted jsp file.