An arbitrary file upload vulnerability in the ShopOrderImportController.java component of qihang-wms commit 75c15a allows attackers to execute arbitrary code via uploading a crafted file.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 13 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An arbitrary file upload vulnerability in the ShopOrderImportController.java component of qihang-wms commit 75c15a allows attackers to execute arbitrary code via uploading a crafted file. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-13T14:08:35.445Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-37430
No data.
Status : Deferred
Published: 2026-05-13T14:17:32.453
Modified: 2026-05-13T15:52:39.023
Link: CVE-2026-37430
No data.
OpenCVE Enrichment
Updated: 2026-05-13T16:00:17Z
Weaknesses
No weakness.