CVE-2025-34046
Severity CVSS v4.0:
CRITICAL
Type:
CWE-434
Unrestricted Upload of File with Dangerous Type
Publication date:
26/06/2025
Last modified:
15/04/2026
Description
An unauthenticated file upload vulnerability exists in the Fanwei E-Office
Impact
Base Score 4.0
10.00
Severity 4.0
CRITICAL
References to Advisories, Solutions, and Tools
- https://github.com/M0ge/CNVD-2021-49104-Fanwei-Eoffice-fileupload/blob/main/eoffice_fileupload.py
- https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cnvd/2021/CNVD-2021-49104.yaml
- https://vulncheck.com/advisories/fanwei-eoffice-file-upload
- https://www.cnvd.org.cn/flaw/show/CNVD-2021-49104



