Rule Name:Weaver OA officeserverservlet Arbitrary File Upload Vulnerability
Severity:high
CVE ID:
Descripiton:
Weaver E-cology offers a collaborative work environment, i.e. OA system in the broad sense. The OA system is a very advanced system that enables the business to management documents, sales, personnel, assets, customers and purchase in a uniform information platform. Attackers can upload arbitrary files through crafted requests. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021. Other reference:None