Skip to main content

AuUploader vulnerabilities

1 published alerts for ZK Framework AuUploader.

Actively exploited (KEV)Ransomware

CVE-2022-36537

ZK Framework AuUploader Unspecified Vulnerability

ZK Framework AuUploader is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2022-36537). ZK Framework AuUploader servlets contain an unspecified vulnerability that could allow an attacker to retrieve the content of a file located in the web context. The ZK Framework is an open-source Java framework. This vulnerability can impact multiple products, including but not limited to ConnectWise R1Soft Server Backup Manager. CISA remediation due date: 2023-03-20. If you need help checking exposure, call (864) 335-9223.