CVE-2020-28165
12.08.2021, 12:15
The EasyCorp ZenTao PMS 12.4.2 application suffers from an arbitrary file upload vulnerability. An attacker can upload arbitrary webshell to the server by using the downloadZipPackage() function.Enginsight
| Vendor | Product | Version |
|---|---|---|
| easycorp | zentao | 𝑥 < 12.4.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration