← Back

CVE-2023-44827

nvd nist
Published: Oct 10, 2023Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

An issue in ZenTao Community Edition v.18.6 and before, ZenTao Biz v.8.6 and before, ZenTao Max v.4.7 and before allows an attacker to execute arbitrary code via a crafted script to the Office Conversion Settings function.

Affected (3)

3 products
Zentao
Zentao Biz
Zentao Max
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Up to 18.6
Up to 8.6
Up to 4.7

Timeline

No history available yet.