GHSA-3w4q-685g-qf2vHighCVSS 7.2

freo2 provided by refirio contains an unrestricted upload of file with dangerous type...

Published
August 4, 2026
Last Modified
August 4, 2026

🔗 CVE IDs covered (1)

📋 Description

freo2 provided by refirio contains an unrestricted upload of file with dangerous type vulnerability. A user with the highest-level administrative privileges for the product may upload an executable file and execute arbitrary OS commands.

🔗 References (4)