CVE-2023-44827
PoC —CVSS 3.1
8.8 high
EPSS
<1%p59
Published
()
Modified
Description
An issue in ZenTao Community Edition v.18.6 and before, ZenTao Biz v.8.6 and before, ZenTao Max v.4.7 and before allows an attacker to execute arbitrary code via a crafted script to the Office Conversion Settings function.
- Vendors
- easycorp
- Products
- zentao, zentao biz, zentao max
- Weakness
- CWE-77
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.