CVE-2020-28165
12.08.2021, 12:15
The EasyCorp ZenTao PMS 12.4.2 application suffers from an arbitrary file upload vulnerability. An attacker can upload arbitrary webshell to the server by using the downloadZipPackage() function.Enginsight
Vendor | Product | Version |
---|---|---|
easycorp | zentao | 𝑥 < 12.4.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration