CVE-2024-46088
entersoft_customer_resource_management
An arbitrary file upload vulnerability in the ProductAction.entphone interface of Zhejiang University Entersoft Customer Resource Management System v2002 to v2024 allows attackers to execute arbitrary code via uploading a crafted file.
- CVSS
- 9.8
- EPSS
- 0.58% 44.6% percentile
- CISA KEV
- Not listed
- Published
- 2024.10.12