Metrics
Affected Vendors & Products
Tue, 04 Mar 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 04 Mar 2025 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical has been found in hzmanyun Education and Training System 2.1.3. This affects the function scorm of the file UploadImageController.java. The manipulation of the argument param leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | hzmanyun Education and Training System UploadImageController.java scorm command injection | |
Weaknesses | CWE-74 CWE-77 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-03-04T18:47:26.009Z
Reserved: 2025-03-04T13:50:23.488Z
Link: CVE-2025-1947

Updated: 2025-03-04T18:47:21.694Z

Status : Received
Published: 2025-03-04T19:15:37.760
Modified: 2025-03-04T19:15:37.760
Link: CVE-2025-1947

No data.