CVE-2025-63695
18.11.2025, 18:16
DzzOffice v2.3.7 and before is vulnerable to Arbitrary File Upload in /dzz/system/ueditor/php/controller.php.Enginsight
| Vendor | Product | Version |
|---|---|---|
| dzzoffice | dzzoffice | 𝑥 ≤ 2.3.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration