Skip to main content
Loading…
    CVE-2024-24000 — jshERP v3.3 is vulnerable to Arbitrary File Upload. The jshERP-boot/systemConfig/upload interface does not check the uploaded file type, and the biz parameter can be spliced into the upload path, resu — CVE Database · The Intelligence Room