2025-11-18 00:00:00
mitre
PUBLISHED
DzzOffice v2.3.7 and before is vulnerable to Arbitrary File Upload in /dzz/system/ueditor/php/controller.php.