A vulnerability classified as critical has been found in hzmanyun Education and Training System 2.1.3. This affects the function scorm of the file UploadImageController.java. The manipulation of the argument param leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
References
Configurations
No configuration.
History
04 Mar 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-04 19:15
Updated : 2025-03-04 19:15
NVD link : CVE-2025-1947
Mitre link : CVE-2025-1947
CVE.ORG link : CVE-2025-1947
JSON object : View
Products Affected
No product.