ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2023-48376
+2 in the same advisory: …48375 …48374
SmartStar Software CWS is a web-based integration platform, its file uploading function does not restrict upload of file with dangerous type.

SmartStar Software CWS is a web-based integration platform, its file uploading function does not restrict upload of file with dangerous type. An unauthenticated remote attacker can exploit this vulnerability to upload arbitrary files to perform arbitrary command or disrupt service.

NVD description · AI analysis pending
9.8
group max
<1%
  • csharp cws collaborative development platform