RULE(RULE ID:333446)

Rule General Information
Release Date: 2021-04-12
Rule Name: Weaver OA Arbitrary file upload Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Weaver focuses on the field of collaborative management OA software, and is committed to helping enterprises build a new mobile office platform with collaborative OA as the core.Arbitrary file upload vulnerability exists on UploadOperation.jsp of Weaver OA V9.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.