CVE-2025-65734
EUVD-2025-20875316.03.2026, 17:16
An authenticated arbitrary file upload vulnerability in the Courses/Work Assignments module of gunet Open eClass v3.11, and fixed in v3.13, allows attackers to execute arbitrary code via uploading a crafted SVG file.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| openeclass | openeclass | 3.11 ≤ 𝑥 < 3.13 |
𝑥
= Vulnerable software versions