CVE-2023-4893006.12.2023, 01:15xinhu xinhuoa 2.2.1 contains a File upload vulnerability.EnginsightProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVectorNISTNIST9.8 CRITICALNETWORKLOWNONECVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HmitreCNA------CVEADP------CISA-ADPADP------Base ScoreCVSS 3.xEPSS ScorePercentile: 33%VendorProductVersionrockoaxinhu2.2.1𝑥= Vulnerable software versionsKnown Exploits!https://github.com/Maverickfir/Vulnerability-recurrence/blob/main/xinhuOA.mdhttps://github.com/Maverickfir/Vulnerability-recurrence/blob/main/xinhuOA.mdCommon Weakness EnumerationCWE-434 - Unrestricted Upload of File with Dangerous TypeThe software allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment.Referenceshttps://gist.github.com/Maverickfir/b8113bdb51ec66e454ffa5b50674c446https://github.com/Maverickfir/Vulnerability-recurrence/blob/main/xinhuOA.mdhttps://github.com/Maverickfir/xinhuOA2.2.1https://gist.github.com/Maverickfir/b8113bdb51ec66e454ffa5b50674c446https://github.com/Maverickfir/Vulnerability-recurrence/blob/main/xinhuOA.mdhttps://github.com/Maverickfir/xinhuOA2.2.1