1 results (0.022 seconds)
CVSS: 9.0EPSS: 0%CPEs: 2EXPL: 0
CVE-2024-42676
https://notcve.org/view.php?id=CVE-2024-42676
15 Aug 2024 — File Upload vulnerability in Huizhi enterprise resource management system v.1.0 and before allows a remote attacker to execute arbitrary code via the /nssys/common/Upload. Aspx? Action=DNPageAjaxPostBack component • https://github.com/WarmBrew/web_vul/blob/main/HZ-cve/HZupload.md • CWE-434: Unrestricted Upload of File with Dangerous Type •