Vulnerabilities (CVE)

Filtered by vendor Zhaoyachao Subscribe
Filtered by product Zdh Web
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-65897 1 Zhaoyachao 1 Zdh Web 2025-12-12 N/A 8.8 HIGH
zdh_web is a data collection, processing, monitoring, scheduling, and management platform. In zdh_web thru 5.6.17, insufficient validation of file upload paths in the application allows an authenticated user to write arbitrary files to the server file system, potentially overwriting existing files and leading to privilege escalation or remote code execution.