CVE-2026-24727EPSS p49.4%
CVE-2026-24727CVE-2026-24727
Description
An unrestricted upload of file with dangerous type vulnerability in the e-paper draft upload function of SUNNET Corporate Training Management System through v10.3 allows remote authenticated users with administrator privileges to execute arbitrary commands by uploading a crafted ZIP archive containing a server-executable file.
Scoring
| EPSS | 0.65% probability of exploitation · percentile 49.4% · 2026-10-05T12:00:23Z |
| Last modified | 2026-07-28 |