Vulnerabilities (CVE)

Filtered by vendor Easycorp Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-28165 1 Easycorp 1 Zentao 2021-08-20 7.5 HIGH 9.8 CRITICAL
The EasyCorp ZenTao PMS 12.4.2 application suffers from an arbitrary file upload vulnerability. An attacker can upload arbitrary webshell to the server by using the downloadZipPackage() function.