CVE-2026-75307 | zhitan-ems up to 1.0.0 SVG File Upload /equipmentFile/upload cross site scripting
A vulnerability was found in zhitan-ems up to 1.0.0 and classified as problematic. The affected element is an unknown function of the file /equipmentFile/upload of the component SVG File Upload. Executing a manipulation can lead to cross site scripting.
This vulnerability is tracked as CVE-2026-75307. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More