ZeroHour

CVE-2023-44827

PoC
CVSS 3.1
8.8 high
EPSS
<1%p59
Published
()
Modified
Description

An issue in ZenTao Community Edition v.18.6 and before, ZenTao Biz v.8.6 and before, ZenTao Max v.4.7 and before allows an attacker to execute arbitrary code via a crafted script to the Office Conversion Settings function.

Vendors
easycorp
Products
zentao, zentao biz, zentao max
Weakness
CWE-77
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.