CVE-2021-27556

Source
https://cve.org/CVERecord?id=CVE-2021-27556
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-27556.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2021-27556
Published
2021-08-31T03:15:06Z
Modified
2026-07-09T01:06:33Z
Severity
  • 7.2 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

The Cron job tab in EasyCorp ZenTao 12.5.3 allows remote attackers (who have admin access) to execute arbitrary code by setting the type parameter to System.

References

Affected packages

Git / github.com/easysoft/zentaopms

Affected ranges

Type
GIT
Repo
https://github.com/easysoft/zentaopms
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:easycorp:zentao:12.5.3:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "12.5.3"
        },
        {
            "last_affected": "12.5.3"
        }
    ],
    "source": "CPE_STRING"
}

Affected versions

12.*
12.5.3
zentaopms_12.*
zentaopms_12.5.3_20210108

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-27556.json"