e-Excellence U-Office Force - Arbitrary File Upload
CVE-2023-32757
9.8CRITICAL
What is CVE-2023-32757?
The file uploading function in e-Excellence U-Office Force is vulnerable as it fails to secure file types when uploaded by an unauthenticated user. This weakness allows attackers to upload potentially malicious files without authentication, which could be exploited to perform arbitrary commands or disrupt the service entirely. Ensuring proper validation and access controls is crucial to mitigating this risk.
Affected Version(s)
U-Office Force 20.0.7668D
