Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Chu1Z1

#29019of 53,634
8.8Total CVSS
Vulnerabilities · 1
PT-2022-17951
8.8
2022-04-06
Eziosuite · Eziosuite · CVE-2022-26605
**Name of the Vulnerable Software and Affected Versions** eZiosuite version 2.0.7 **Description** The issue concerns an authenticated arbitrary file upload via the Avatar upload functionality. **Recommendations** For eZiosuite version 2.0.7, consider disabling the Avatar upload functionality until a patch is available to prevent exploitation. Restrict access to the upload feature to minimize the risk of arbitrary file uploads.