VYPR

E-Office

by Weaver

CVEs (3)

  • CVE-2023-2523HigMay 4, 2023
    risk 0.50cvss 7.3epss 0.33

    A vulnerability was found in Weaver E-Office 9.5. It has been rated as critical. Affected by this issue is some unknown functionality of the file App/Ajax/ajax.php?action=mobile_upload_save. The manipulation of the argument upload_quwan leads to unrestricted upload. The attack…

  • CVE-2023-2648MedMay 11, 2023
    risk 0.43cvss 6.3epss 0.28

    A vulnerability was found in Weaver E-Office 9.5. It has been classified as critical. This affects an unknown part of the file /inc/jquery/uploadify/uploadify.php. The manipulation of the argument Filedata leads to unrestricted upload. It is possible to initiate the attack…

  • CVE-2023-2647MedMay 11, 2023
    risk 0.42cvss 6.3epss 0.07

    A vulnerability was found in Weaver E-Office 9.5 and classified as critical. Affected by this issue is some unknown functionality of the file /webroot/inc/utility_all.php of the component File Upload Handler. The manipulation leads to command injection. The attack may be…