CVE-2025-63695

Publication date

2025-11-18 00:00:00

Family

mitre

State

PUBLISHED

Description

DzzOffice v2.3.7 and before is vulnerable to Arbitrary File Upload in /dzz/system/ueditor/php/controller.php.