Vulnerabilities > Isellerpal

DATE CVE VULNERABILITY TITLE RISK
2024-08-15 CVE-2024-42676 Unrestricted Upload of File with Dangerous Type vulnerability in Isellerpal Enterprise Resource Management System
File Upload vulnerability in Huizhi enterprise resource management system v.1.0 and before allows a remote attacker to execute arbitrary code via the /nssys/common/Upload.
network
low complexity
isellerpal CWE-434
8.8
2024-08-15 CVE-2024-42677 Unspecified vulnerability in Isellerpal Enterprise Resource Management System
An issue in Huizhi enterprise resource management system v.1.0 and before allows a local attacker to obtain sensitive information via the /nssys/common/filehandle.
local
low complexity
isellerpal
5.5