CVE-2025-4768 | feng_ha_ha/megagao ssm-erp/production_ssm 1.0 PictureServiceImpl.java uploadPicture File unrestricted upload

SecurityVulns

A vulnerability classified as critical has been found in feng_ha_ha/megagao ssm-erp and production_ssm 1.0. This affects the function uploadPicture of the file PictureServiceImpl.java. The manipulation of the argument File leads to unrestricted upload.

This vulnerability is uniquely identified as CVE-2025-4768. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.

This product is distributed under two entirely different names.VulDB Recent EntriesRead More