Unrated0% EPSS
Unrestricted Upload of File with Dangerous Type in the /WebAgenda/download/uploadFile.jsp API endpoint of Flowring Agentflow 4.0 version before 2023/03/24 allows remote authenticated users to execute arbitrary system commands via a malicious file.
Published 2026-09-29 · last modified 2026-09-29
| Vendor | Product |
|---|---|
| flowring technology corp | agentflow 4.0 |
Ncerio by BeyondNets · data from NVD, CISA KEV, EPSS.